CVE-2026-28971
published 2026-05-11CVE-2026-28971: The issue was addressed with improved UI handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, visionOS 26.5. A malicious…
PriorityP419medium4.3CVSS 3.1
AVNACLPRNUIRSUCLINAN
EPSS
0.30%
21.6th percentile
The issue was addressed with improved UI handling. This issue is fixed in Safari 26.5, iOS 26.5 and iPadOS 26.5, macOS Tahoe 26.5, visionOS 26.5. A malicious iframe may use another website’s download settings.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_and_ipados | < 26.5 | 26.5 |
| apple | ipados | < 26.5 | 26.5 |
| apple | iphone_os | < 26.5 | 26.5 |
| apple | macos | < 26.5 | 26.5 |
| apple | macos | >= 26.0 < 26.5 | 26.5 |
| apple | safari | < 26.5 | 26.5 |
| apple | visionos | < 26.5 | 26.5 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Sans Isc
Apple Patches Everything, (Mon, May 11th)
blogs_sans_isc·2026-05-11·CVSS 5.5
CVE-2025-43524 [MEDIUM] Apple Patches Everything, (Mon, May 11th)
Apple Patches Everything
Published: 2026-05-11. Last Updated: 2026-05-11 22:19:13 UTC
by Johannes Ullrich (Version: 1)
0 comment(s)
Apple today released its typical feature update across it's operating systems (iOS, iPadOS, macOS, tvOS, watchOS, vision OS). With this update, Apple patched 84 different vulnerabilities. Updates are available for the "26" series of operating systems, as well as for the previous "18" version of iOS/iPadOS, and two versions back for macOS (version 14 and 15).
None of the vulnerabilities has been exploited. The number of addressed vulnerabilities is about average compared to similar Apple updates.
Figure: Number of Vulnerabilities patched for each security update. Last one in red at the end.
iOS 26.5 and iPadOS 26.5 iOS 18.7.9 and iPadOS 18.7.9 macOS Tahoe
Bugzilla
CVE-2026-39830 podman: golang.org/x/crypto/ssh: Denial of Service via resource leak from unsolicited SSH responses [fedora-all]
bugzilla·2026-06-18·CVSS 9.1
CVE-2026-39830 [CRITICAL] CVE-2026-39830 podman: golang.org/x/crypto/ssh: Denial of Service via resource leak from unsolicited SSH responses [fedora-all]
CVE-2026-39830 podman: golang.org/x/crypto/ssh: Denial of Service via resource leak from unsolicited SSH responses [fedora-all]
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.
Discussion:
fedora rawhide should be unaffected as it already has version number higher than required for the fix. Created an upstream PR for v5.8 https://github.com/podman-container-tools/podman/pull/28971
Bugzilla
CVE-2026-43097 kernel: PCI: hv: Fix double ida_free in hv_pci_probe error path
bugzilla·2026-05-06
CVE-2026-43097 [LOW] CVE-2026-43097 kernel: PCI: hv: Fix double ida_free in hv_pci_probe error path
CVE-2026-43097 kernel: PCI: hv: Fix double ida_free in hv_pci_probe error path
In the Linux kernel, the following vulnerability has been resolved:
PCI: hv: Fix double ida_free in hv_pci_probe error path
If hv_pci_probe() fails after storing the domain number in
hbus->bridge->domain_nr, there is a call to free this domain_nr via
pci_bus_release_emul_domain_nr(), however, during cleanup, the bridge
release callback pci_release_host_bridge_dev() also frees the domain_nr
causing ida_free to be called on same ID twice and triggering following
warning:
ida_free called for id=28971 which is not allocated.
WARNING: lib/idr.c:594 at ida_free+0xdf/0x160, CPU#0: kworker/0:2/198
Call Trace:
pci_bus_release_emul_domain_nr+0x17/0x20
pci_release_host_bridge_dev+0x4b/0x60
device_release+0x3b/0xa0
kobj
2026-05-11
Published