Impact
An out‑of‑bounds read was uncovered, originating from deficient bounds checking within the operating system. The flaw can cause the system to terminate unexpectedly, resulting in a denial of service for all users. The weakness represents a classic bounds‑check failure, allowing an adversary to influence the state of the system via an improperly validated memory access.
Affected Systems
Apple macOS is affected. The issue has been remedied in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, and macOS Tahoe 26.6. Any earlier releases that do not include these patch fixes remain vulnerable.
Risk and Exploitability
The EPSS score indicates a very low exploitation probability (less than 1%) and the vulnerability is not listed in the CISA KEV catalog, implying no significant widespread exploitation activity is documented. The CVSS score is 9.8, reflecting a high impact in terms of confidentiality, integrity, and availability. The likely attack vector is local, as the description notes that an app may trigger the error; however, without additional details, precise conditions for exploitation remain uncertain. Given the potential for denial of service, the risk warrants prompt remediation.
OpenCVE Enrichment