Impact
The vulnerability allows an application to read kernel memory. Based on the description, the read could potentially expose privileged data such as passwords or system keys. This flaw is classified under CWE-119, which denotes uncontrolled read beyond buffer limits.
Affected Systems
This issue impacts Apple operating systems older than the patched releases: iOS 18.7.10 and iPadOS 18.7.10, macOS Sequoia 15.7.8, and macOS Sonoma 14.8.8. Any devices running earlier versions could be affected, regardless of device type; newer releases contain the memory handling fix and are not vulnerable.
Risk and Exploitability
The CVSS score of 7.8 rates it as high severity, while the EPSS score of less than 1% indicates a low likelihood of exploitation in the wild. The vulnerability is not listed in the CISA KEV catalog. Based on the description, the likely attack vector is local or mediated by a malicious third‑party app, as exploitation requires code execution within an application context. Based on the description, no widespread exploitation is currently documented.
OpenCVE Enrichment