Impact
The macOS memory‑handling flaw is a buffer‑overflow weakness (CWE‑119) that can be triggered by a remote user. It corrupts kernel memory and can cause the operating system to terminate unexpectedly, resulting in a denial‑of‑service condition at the kernel level. The description does not indicate that the attacker gains code‑execution or elevated privileges, so the impact is limited to crash and loss of availability.
Affected Systems
Apple’s macOS is impacted in all releases that do not include the update for Sequoia 15.7.8, Sonoma 14.8.8, or Tahoe 26.6. Versions older than or equivalent to those builds remain vulnerable until the corresponding patch is applied.
Risk and Exploitability
The flaw is remotely exploitable as indicated by its description. The CVSS score of 9.8 signals critical severity, while an EPSS score of <1% indicates a very low yet non‑zero likelihood of exploitation. It is not listed in the CISA KEV catalog. Successful exploitation corrupts kernel memory and can cause system termination, effectively creating a high‑availability disruption. The likely attack vector is through a network‑based service that accepts untrusted input, though the CVE description does not specify a particular protocol, so this inference is based on standard remote memory‑corruption patterns.
OpenCVE Enrichment