Appleが1件のゼロデイ脆弱性を修正した「macOS 26.7.1 Tahoe」と「macOS 15.8.1 Sequoia」をリリースしています。詳細は以下から。
![]()
Appleは日本時間2026年09月28日、さまざまなアプリにApple Intelligence機能を統合した「macOS 27 Golden Gate」のHotfixとなる「macOS 27.0.1 Golden Gate (26A434)」アップデートをリリースしましたが、同時に現在もセキュリティアップデートを提供しているmacOS TahoeとSequoiaにも「macOS 26.7.1 Tahoe (25G241)」と「macOS 15.8.1 Sequoia (24H32)」アップデートをリリースしています。

This update provides security fixes for your Mac.
リリースノートより
Appleによると新たにリリースされたmacOS 26.7.1 TahoeやmacOS 15.8.1 Sequoiaでは、Meta Product Securityチームによって発見されたCoreGraphicsが確保したメモリ領域外にデータを書き込んで不具合により、任意のコードが実行される可能性のある脆弱性(CVE-2026-86950)が修正されており、Appleは、この不具合を利用した攻撃を主にiOS 27より前のバージョンで既に認識しているそうなので、ユーザーの方は時間を見つけてアップデートすることをオススメします。

Impact: Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.
About the security content of macOS Tahoe 26.7.1より
おまけ
なお、macOS 27 Golden Gateのリリースにより、macOS 26.7.1 TahoeやmacOS 15.8.1 Sequoiaのアップデートボタンは、システム設定アプリのソフトウェアアップデート画面の下に移動しているので、まだmacOS 27 Golden Gateへアップグレードしたくない方は注意して下さい。

macOS 26.7.1 Tahoeのソフトウェアアップデート
2026年09月28日に公開されたアップデート
| OS Version | Build | CVE数 |
|---|---|---|
| iOS/iPadOS 27.0.1 | 24A446 | なし |
| iOS/iPadOS 26.7.1 | 23H30 | ゼロデイ脆弱性:1件 |
| macOS Golden Gate 27.0.1 | 26A434 | なし |
| macOS Tahoe 26.7.1 | 25G241 | ゼロデイ脆弱性:1件 |
| macOS Sequoia 15.8.1 | 24H32 | ゼロデイ脆弱性:1件 |
| watchOS 27.0.1 | 24R365 | なし |
| visionOS 27.0.1 | 24M372 | なし |
- Apple security releases – Apple Support


コメント