Description
A race condition was addressed with improved locking. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A local user may be able to read kernel memory.
Published: 2026-09-14
Score: 4.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Local Kernel Memory Disclosure
Action: Patch
AI Analysis

Impact

A race condition was discovered in the kernel memory handling of macOS. The flaw permits a local user to read portions of kernel memory that should remain protected, potentially exposing sensitive data. Based on the description, it is inferred that this local memory disclosure could be used as a stepping stone for privilege escalation, since kernel memory holds privileged information.

Affected Systems

Apple’s macOS versions before macOS Golden Gate 27, macOS Sequoia 15.8, and macOS Tahoe 26.7 are affected. Any release at or newer than those contains the fixing locking changes and removes the race condition.

Risk and Exploitability

The EPSS score is < 1 % and the vulnerability is not listed in CISA KEV. The CVSS score is 4.7. Based on the description, it is inferred that because the condition is local, exploitation requires physical or authorized user access. If achieved, the attacker can read kernel memory and potentially elevate privileges. The low EPSS indicates low public exploitation likelihood, but the impact remains high if locally exploited.

Generated by OpenCVE AI on September 20, 2026 at 18:58 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the latest macOS update (Golden Gate 27, Sequoia 15.8, Tahoe 26.7 or later).
  • If an immediate update is not possible, disable unnecessary privileged tools to reduce the attack surface.
  • Monitor system logs for unexpected kernel memory reads and enforce strict access controls on administrative utilities.
  • Restrict local user access to kernel memory by enforcing SIP and disabling unused kernel extensions.

Generated by OpenCVE AI on September 20, 2026 at 18:58 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 20 Sep 2026 19:15:00 +0000

Type Values Removed Values Added
Title Race Condition Allowing Local User to Read Kernel Memory

Thu, 17 Sep 2026 22:15:00 +0000

Type Values Removed Values Added
Title Race Condition Allowing Local User to Read Kernel Memory

Thu, 17 Sep 2026 12:00:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

Wed, 16 Sep 2026 12:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-362
Metrics cvssV3_1

{'score': 4.7, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N'}


Wed, 16 Sep 2026 09:00:00 +0000

Type Values Removed Values Added
Title Race Condition Allowing Local Kernel Memory Disclosure in macOS
Weaknesses CWE-200
CWE-362

Tue, 15 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 10:15:00 +0000

Type Values Removed Values Added
Title Race Condition Allowing Local Kernel Memory Disclosure in macOS
Weaknesses CWE-200
CWE-362

Mon, 14 Sep 2026 23:45:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Vendors & Products Apple
Apple macos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description A race condition was addressed with improved locking. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A local user may be able to read kernel memory.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-17T14:59:37.056Z

Reserved: 2026-05-01T22:46:21.642Z

Link: CVE-2026-43690

cve-icon Vulnrichment

Updated: 2026-09-15T19:26:47.360Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-14T21:17:08.340

Modified: 2026-09-17T11:42:58.377

Link: CVE-2026-43690

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T19:00:04Z

Weaknesses
  • CWE-362

    Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')