Impact
An Apple macOS memory initialization flaw can allow a local application to read kernel memory that should be protected. This weakness may expose sensitive information contained in kernel memory. The vulnerability is an example of improper handling of memory, allowing confidential data to be disclosed.
Affected Systems
The issue affects macOS running on Apple devices before the release of macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, and macOS Tahoe 26.6. The specified updates contain the fix, so earlier builds of those macOS versions are susceptible.
Risk and Exploitability
The EPSS score is < 1% and the CVSS score is 5.5, indicating moderate risk. The vulnerability is not listed in the CISA KEV catalog, suggesting there are no known public exploits. The likely attack vector is inferred to be local, as any local application with execution privileges could potentially exploit the flaw.
OpenCVE Enrichment