Description
A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. Mounting a maliciously crafted SMB network share may lead to system termination.
Published: 2026-09-14
Score: 6.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: System Termination via Use‑After‑Free
Action: Apply Patch
AI Analysis

Impact

A use‑after‑free vulnerability in macOS SMB share handling can cause the operating system to crash when a maliciously crafted network share is mounted. The flaw arises from improper memory management, allowing an attacker to trigger a fault that terminates the kernel and brings the entire system to a halt. The impact is loss of availability and potential exposure of crash information.

Affected Systems

Apple macOS is affected. Versions prior to macOS Sequoia 15.8, macOS Tahoe 26.7, and macOS Golden Gate 27 contain the flaw. These macOS release lines require remediation.

Risk and Exploitability

The vulnerability is a classical use‑after‑free (CWE‑416) with a CVSS score of 6.5. The likely attack vector is mounting a maliciously crafted SMB share, which is inferred from the description; an attacker with network access could trigger the flaw. The EPSS score indicates a very low likelihood of exploitation, and the issue is not listed in the CISA KEV catalog. The primary risk is denial of service by bringing the system to a halt, with no direct confidentiality or integrity impact.

Generated by OpenCVE AI on September 20, 2026 at 22:14 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update macOS to version 27 of Golden Gate, 15.8 of Sequoia, or 26.7 of Tahoe or newer.
  • Restrict SMB connections to trusted hosts or disable SMB if not needed.
  • Ensure that System Integrity Protection and sandboxing features remain enabled.

Generated by OpenCVE AI on September 20, 2026 at 22:14 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 20 Sep 2026 22:30:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in macOS SMB Share Handling Leading to System Crash

Thu, 17 Sep 2026 11:45:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*

Wed, 16 Sep 2026 13:00:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in SMB Share Handling Causes System Termination

Tue, 15 Sep 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 11:15:00 +0000

Type Values Removed Values Added
Title Use‑After‑Free in SMB Share Handling Causes System Termination
Weaknesses CWE-416

Tue, 15 Sep 2026 00:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Vendors & Products Apple
Apple macos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description A use-after-free issue was addressed with improved memory management. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. Mounting a maliciously crafted SMB network share may lead to system termination.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-15T17:43:58.807Z

Reserved: 2026-05-01T22:46:21.645Z

Link: CVE-2026-43719

cve-icon Vulnrichment

Updated: 2026-09-15T17:43:51.764Z

cve-icon NVD

Status : Analyzed

Published: 2026-09-14T21:17:09.467

Modified: 2026-09-17T11:33:23.980

Link: CVE-2026-43719

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T22:15:05Z

Weaknesses