Description
A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to intercept network connections intended for another process.
Published: 2026-07-27
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A logic issue in Apple macOS allows an application to intercept network connections that are intended for another process, potentially enabling unauthorized data capture or modification before the data reaches its intended destination. This flaw can be exploited by any app taking advantage of the weakened restrictions, thereby compromising the confidentiality or integrity of network traffic associated with other processes. The weakness is a classic example of improper handling of inter‑process networking controls, enabling an attacker to read or alter traffic that should remain isolated to a separate process.

Affected Systems

Apple macOS systems running versions prior to macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, or macOS Tahoe 26.6 are affected. Users of these operating systems should verify that they are running the mentioned patched releases to eliminate the vulnerability.

Risk and Exploitability

The EPSS score is < 1%, and the vulnerability is not listed in the CISA KEV catalog, which suggests a lack of public evidence of exploitation at this time. The CVSS score of 9.8 signals a critical severity. Nevertheless, the problem can be exploited by any application that succeeds in hijacking the system's network connection handling logic; such an attack would likely require local execution privileges (inferred) but does not appear to be restricted to remote exploitation. The severity therefore depends heavily on the user's configuration and threat landscape, yet the ability to tap into other processes’ network traffic remains a high‑impact concern for systems where sensitive data is transmitted.

Generated by OpenCVE AI on August 5, 2026 at 00:39 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade to macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, or macOS Tahoe 26.6 or later
  • Apply the App Sandbox to limit inter‑process network access for applications
  • Enable the macOS Firewall and configure it to block unused inbound connections and restrict outbound traffic to necessary ports

Generated by OpenCVE AI on August 5, 2026 at 00:39 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 05 Aug 2026 01:00:00 +0000

Type Values Removed Values Added
Title macOS Logic Bug Allows Unauthorized Interception of Network Connections

Tue, 04 Aug 2026 14:00:00 +0000

Type Values Removed Values Added
Title Inter‑Process Network Traffic Interception via Logic Issue
Weaknesses CWE-732

Thu, 30 Jul 2026 01:30:00 +0000

Type Values Removed Values Added
Title Inter‑Process Network Traffic Interception via Logic Issue
Weaknesses CWE-732

Tue, 28 Jul 2026 16:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-284
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 28 Jul 2026 02:45:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Vendors & Products Apple
Apple macos

Mon, 27 Jul 2026 20:30:00 +0000

Type Values Removed Values Added
Description A logic issue was addressed with improved restrictions. This issue is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6. An app may be able to intercept network connections intended for another process.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-07-28T15:07:46.063Z

Reserved: 2026-05-01T22:46:27.819Z

Link: CVE-2026-43779

cve-icon Vulnrichment

Updated: 2026-07-28T15:07:37.956Z

cve-icon NVD

Status : Analyzed

Published: 2026-07-27T21:17:02.307

Modified: 2026-07-28T17:58:56.950

Link: CVE-2026-43779

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-05T00:45:03Z

Weaknesses