An out-of-bounds read was addressed with improved bounds checking.
Xcode 26.4
Released March 24, 2026
Available for : MacOS Tahoe 26.2 and later
otool
Available for: macOS Tahoe 26.2 and later
Impact: An app may be able to cause unexpected system termination
Description: An out-of-bounds read was addressed with improved bounds checking.
CVE-2026-28890: Nathaniel Oh (@calysteon)
Simulator
Available for: macOS Tahoe 26.2 and later
Impact: An app may be able to read arbitrary files as root
Description: A permissions issue was addressed with additional restrictions.
CVE-2026-28889: Mihai Marin

