Description
The issue was addressed with improved memory handling. This issue is fixed in iOS 26.4 and iPadOS 26.4, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.4, tvOS 26.4, visionOS 26.4, watchOS 26.4. An attacker may be able to cause unexpected system termination or read kernel memory.
Published: 2026-07-27
Score: 7.7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability involves improper memory handling in the Apple kernel layers, potentially allowing an attacker to cause unexpected system termination or read kernel memory. The issue is fixed in multiple Apple operating systems, including iOS 26.4, iPadOS 26.4, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.4, tvOS 26.4, visionOS 26.4, and watchOS 26.4.

Affected Systems

Apple iOS, iPadOS, macOS, tvOS, visionOS, and watchOS devices are impacted. The vulnerability is resolved in the aforementioned firmware releases; devices running earlier versions of any of these operating systems remain vulnerable.

Risk and Exploitability

The CVSS score is 7.7, indicating a high severity, while the EPSS score is below 1%, suggesting a low exploitation probability. The vulnerability is not listed in the CISA KEV catalog. The attack vector is not explicitly stated in the advisory; it is inferred that a local attacker with elevated privileges would need to exploit a kernel memory handling flaw to trigger the crash or memory read. Despite the low probability, the potential for kernel memory exposure or unexpected termination warrants timely patching.

Generated by OpenCVE AI on August 22, 2026 at 11:05 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update the device operating system to the latest available version—iOS 26.4, iPadOS 26.4, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.4, tvOS 26.4, visionOS 26.4, or watchOS 26.4—depending on the device model.
  • Reboot the device after the update to ensure that the new kernel and memory handling fixes are active.
  • Monitor system logs for signs of kernel panics or abnormal memory usage that could indicate residual exploitation attempts.

Generated by OpenCVE AI on August 22, 2026 at 11:05 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sat, 22 Aug 2026 11:30:00 +0000

Type Values Removed Values Added
Title Improper Kernel Memory Handling Leads to System Crash or Kernel Memory Exposure

Fri, 21 Aug 2026 01:00:00 +0000

Type Values Removed Values Added
Description The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. An attacker may be able to cause unexpected system termination or read kernel memory. The issue was addressed with improved memory handling. This issue is fixed in iOS 26.4 and iPadOS 26.4, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.4, tvOS 26.4, visionOS 26.4, watchOS 26.4. An attacker may be able to cause unexpected system termination or read kernel memory.
References

Wed, 05 Aug 2026 02:15:00 +0000

Type Values Removed Values Added
Title MacOS Kernel Memory Exposure and Unexpected System Termination

Wed, 05 Aug 2026 00:15:00 +0000

Type Values Removed Values Added
Title MacOS Kernel Memory Exposure and Unexpected System Termination
Weaknesses CWE-122

Sun, 02 Aug 2026 10:30:00 +0000

Type Values Removed Values Added
Title Kernel Memory Read and Unexpected Termination via Improper Memory Handling in macOS

Tue, 28 Jul 2026 16:15:00 +0000

Type Values Removed Values Added
Title Kernel Memory Read and Unexpected Termination via Improper Memory Handling in macOS
Weaknesses CWE-119
CWE-122
Metrics cvssV3_1

{'score': 7.7, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 28 Jul 2026 01:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Vendors & Products Apple
Apple macos

Mon, 27 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Description The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. An attacker may be able to cause unexpected system termination or read kernel memory.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-08-21T00:38:57.476Z

Reserved: 2026-03-03T16:36:03.983Z

Link: CVE-2026-28896

cve-icon Vulnrichment

Updated: 2026-07-28T15:57:07.350Z

cve-icon NVD

Status : Modified

Published: 2026-07-27T21:16:48.980

Modified: 2026-08-21T01:17:00.360

Link: CVE-2026-28896

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-22T11:15:04Z

Weaknesses
  • CWE-119

    Improper Restriction of Operations within the Bounds of a Memory Buffer