Description
The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. An attacker may be able to cause unexpected system termination or read kernel memory.
Published: 2026-07-27
Score: 7.7 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability arises from improper memory handling within the macOS kernel layer. An attacker can potentially force the system to terminate unexpectedly or read contents of kernel memory, leading to loss of availability and sensitive data exposure.

Affected Systems

Apple macOS systems are impacted. The issue is fixed in macOS Sequoia 15.7.8 and macOS Sonoma 14.8.8. Versions prior to those releases are vulnerable.

Risk and Exploitability

The CVSS score is 7.7, indicating a high severity, while the EPSS score is below 1%, suggesting a low exploitation probability. The vulnerability is not listed in the CISA KEV catalog. The attack vector is not explicitly stated in the advisory; it is inferred that a local attacker with elevated privileges would need to exploit a kernel memory handling flaw to trigger the crash or memory read. Despite the low probability, the potential for kernel memory exposure or unexpected termination warrants timely patching.

Generated by OpenCVE AI on August 5, 2026 at 01:53 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update the operating system to macOS Sequoia 15.7.8 or later on Sequoia devices, or to macOS Sonoma 14.8.8 or later on Sonoma devices.
  • Reboot the system to ensure the new kernel is loaded and the memory handling fix is active.
  • Continuously monitor system logs for kernel panics or abnormal memory usage that may indicate residual exploitation attempts.

Generated by OpenCVE AI on August 5, 2026 at 01:53 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 05 Aug 2026 02:15:00 +0000

Type Values Removed Values Added
Title MacOS Kernel Memory Exposure and Unexpected System Termination

Wed, 05 Aug 2026 00:15:00 +0000

Type Values Removed Values Added
Title MacOS Kernel Memory Exposure and Unexpected System Termination
Weaknesses CWE-122

Sun, 02 Aug 2026 10:30:00 +0000

Type Values Removed Values Added
Title Kernel Memory Read and Unexpected Termination via Improper Memory Handling in macOS

Tue, 28 Jul 2026 16:15:00 +0000

Type Values Removed Values Added
Title Kernel Memory Read and Unexpected Termination via Improper Memory Handling in macOS
Weaknesses CWE-119
CWE-122
Metrics cvssV3_1

{'score': 7.7, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 28 Jul 2026 01:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Vendors & Products Apple
Apple macos

Mon, 27 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Description The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8. An attacker may be able to cause unexpected system termination or read kernel memory.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-07-28T15:57:19.941Z

Reserved: 2026-03-03T16:36:03.983Z

Link: CVE-2026-28896

cve-icon Vulnrichment

Updated: 2026-07-28T15:57:07.350Z

cve-icon NVD

Status : Analyzed

Published: 2026-07-27T21:16:48.980

Modified: 2026-07-29T15:47:13.203

Link: CVE-2026-28896

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-05T02:00:12Z

Weaknesses
  • CWE-119

    Improper Restriction of Operations within the Bounds of a Memory Buffer