Description
The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A remote user may be able to cause unexpected system termination or corrupt kernel memory.
Published: 2026-07-27
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A memory handling defect in macOS allows a remote user to corrupt kernel memory, potentially causing unexpected system termination. The flaw arises from insufficient validation of data processed by the system, resulting in invalid memory accesses or overwrites.

Affected Systems

Apple macOS releases prior to Sequoia 15.7.8, Sonoma 14.8.8 and Tahoe 26.6 are affected. The vendor has addressed the issue in these specific build numbers; systems with older or unpatched versions remain vulnerable.

Risk and Exploitability

The description indicates that a remote user can trigger the flaw, implying a remote attack vector. The EPSS score is less than 1%, reflecting a low exploitation likelihood. The vulnerability is not listed in the CISA KEV catalog. Kernel memory corruption can lead to system termination, which is severe, and the CVSS score of 9.8 indicates critical severity.

Generated by OpenCVE AI on August 5, 2026 at 01:37 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade to macOS Sequoia 15.7.8, Sonoma 14.8.8, or Tahoe 26.6 where the issue has been fixed
  • Check for and install any additional Apple security updates that may contain related mitigations
  • If an immediate upgrade is not possible, monitor system logs for unexplained termination events and restrict exposure of services that could be used by a remote attacker

Generated by OpenCVE AI on August 5, 2026 at 01:37 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 05 Aug 2026 00:15:00 +0000

Type Values Removed Values Added
Title Remote Memory Corruption Leading to System Termination in macOS
Weaknesses CWE-416

Tue, 28 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-119
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 28 Jul 2026 16:15:00 +0000

Type Values Removed Values Added
Title Remote Memory Corruption Leading to System Termination in macOS
Weaknesses CWE-416

Tue, 28 Jul 2026 02:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Vendors & Products Apple
Apple macos

Mon, 27 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Description The issue was addressed with improved memory handling. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. A remote user may be able to cause unexpected system termination or corrupt kernel memory.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-07-28T19:04:18.239Z

Reserved: 2026-05-01T22:46:21.641Z

Link: CVE-2026-43682

cve-icon Vulnrichment

Updated: 2026-07-28T19:04:04.528Z

cve-icon NVD

Status : Analyzed

Published: 2026-07-27T21:16:53.040

Modified: 2026-07-29T17:03:19.340

Link: CVE-2026-43682

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-05T01:45:04Z

Weaknesses
  • CWE-119

    Improper Restriction of Operations within the Bounds of a Memory Buffer