Description
A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to cause a denial of service.
Published: 2026-07-27
Score: 5.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is a logic issue that leads to memory corruption in macOS. When triggered, it can cause an application to crash, resulting in a denial of service. The impact is limited to the application that experiences the crash but can affect system stability if the application is critical.

Affected Systems

Apple macOS products are affected; the vulnerability exists in releases prior to macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, and macOS Tahoe 26.6, which contain the fix.

Risk and Exploitability

The EPSS score is less than 1%, suggesting a very low chance of exploitation, and the vulnerability is not included in the CISA KEV catalog. The description does not specify an attack vector, but it is reasonable to infer that a local or privileged user capable of launching the affected application could induce the memory corruption. While the exploit is not documented, the ability to cause a denial of service warrants prompt remediation.

Generated by OpenCVE AI on August 4, 2026 at 13:30 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest macOS update that includes the fix (Sequoia 15.7.8, Sonoma 14.8.8, Tahoe 26.6).
  • If an update cannot be installed immediately, restrict execution of the affected application until a patch is deployed to prevent potential denial of service.
  • Continuously monitor application logs for crashes or memory corruption indications and report incidents to Apple Support.

Generated by OpenCVE AI on August 4, 2026 at 13:30 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 04 Aug 2026 14:00:00 +0000

Type Values Removed Values Added
Title Memory Corruption Logic Issue Leading to Denial of Service in macOS

Sun, 02 Aug 2026 10:45:00 +0000

Type Values Removed Values Added
Title Memory Corruption Logic Issue Leading to Denial of Service in macOS

Tue, 28 Jul 2026 18:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-400
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 28 Jul 2026 01:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Vendors & Products Apple
Apple macos

Mon, 27 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Description A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to cause a denial of service.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-07-28T17:55:38.021Z

Reserved: 2026-03-03T16:36:03.988Z

Link: CVE-2026-28932

cve-icon Vulnrichment

Updated: 2026-07-28T17:48:39.304Z

cve-icon NVD

Status : Analyzed

Published: 2026-07-27T21:16:49.850

Modified: 2026-07-29T17:01:42.320

Link: CVE-2026-28932

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-04T13:45:03Z

Weaknesses
  • CWE-400

    Uncontrolled Resource Consumption