Impact
The vulnerability arises from improper memory handling within the macOS kernel layer. An attacker can potentially force the system to terminate unexpectedly or read contents of kernel memory, leading to loss of availability and sensitive data exposure.
Affected Systems
Apple macOS systems are impacted. The issue is fixed in macOS Sequoia 15.7.8 and macOS Sonoma 14.8.8. Versions prior to those releases are vulnerable.
Risk and Exploitability
The CVSS score is 7.7, indicating a high severity, while the EPSS score is below 1%, suggesting a low exploitation probability. The vulnerability is not listed in the CISA KEV catalog. The attack vector is not explicitly stated in the advisory; it is inferred that a local attacker with elevated privileges would need to exploit a kernel memory handling flaw to trigger the crash or memory read. Despite the low probability, the potential for kernel memory exposure or unexpected termination warrants timely patching.
OpenCVE Enrichment