Description
A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to cause unexpected system termination.
Published: 2026-09-14
Score: n/a
EPSS: n/a
KEV: No
Impact: Denial of Service
Action: Immediate Patch
AI Analysis

Impact

The vulnerability is a use‑after‑free bug that can lead to system termination when memory that has been freed is accessed. It stems from improper memory handling in macOS. The description indicates that an affected process may unexpectedly force the system to crash, resulting in a loss of availability for the affected machine.

Affected Systems

Apple macOS versions prior to Sequoia 15.7.8, Sonoma 14.8.8, and Tahoe 26.6 are vulnerable. These include all macOS releases in those lines that lack the patch bundled in the mentioned update packages. Endpoints running older builds must upgrade to the stated versions or newer to mitigate the risk.

Risk and Exploitability

The CVSS and EPSS scores are not disclosed, so exact risk quantification is unavailable. No public exploits are known, and the vulnerability is not listed in CISA KEV. Based on the description, it is inferred that the vulnerability could be triggered by code executing in a local or remote context; however, the exact attack vector is not specified. If exploitation occurs while a critical system process is running, the impact could result in a system‑wide denial of service requiring a reboot or manual recovery.

Generated by OpenCVE AI on September 15, 2026 at 11:11 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the macOS update to Sequoia 15.7.8, Sonoma 14.8.8, or Tahoe 26.6
  • Restrict or sandbox untrusted third‑party applications until the update is applied
  • Configure automatic macOS updates or regularly check for patches to keep systems protected

Generated by OpenCVE AI on September 15, 2026 at 11:11 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 15 Sep 2026 11:30:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free Allowing Unexpected System Termination in macOS
Weaknesses CWE-416

Mon, 14 Sep 2026 23:30:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Vendors & Products Apple
Apple macos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to cause unexpected system termination.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-14T20:49:04.068Z

Reserved: 2026-03-03T16:36:03.988Z

Link: CVE-2026-28933

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-14T21:17:05.290

Modified: 2026-09-14T21:17:05.290

Link: CVE-2026-28933

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-15T11:15:18Z

Weaknesses