Impact
The flaw involves improper memory handling that allows an application to corrupt kernel memory. This can result in unexpected system termination and may expose the device to instability or data loss. The weakness is categorized as buffer over‑read/out‑of‑bounds write (CWE‑119, CWE‑787).
Affected Systems
All Apple macOS releases prior to the fixes detailed by Apple are affected. The fixed versions include macOS Sequoia 15.7.2, macOS Sonoma 14.8.2, and macOS Tahoe 26.1. Any device running an earlier build is potentially vulnerable.
Risk and Exploitability
The CVSS score of 7.5 indicates a high impact when the flaw is exercised. The EPSS score of less than 1 % suggests that exploitation is currently rare. The vulnerability is not included in the CISA KEV catalogue. An attacker would need the ability to run a local application that triggers the vulnerable routine; no evidence in the description indicates a remote exploitation pathway.
OpenCVE Enrichment