Apple Patches CVE-2026-20634: Out-of-Bounds Read in macOS ImageIO via Crafted SGI Files
Apple has released a security update for macOS to fix CVE-2026-20634, an out-of-bounds read vulnerability in the ImageIO framework that can be triggered by a specially crafted SGI image file.