Impact
An application that runs on Apple devices can read kernel memory due to improper memory handling. This vulnerability allows the attacker to expose protected data that should not be reachable outside the kernel, thereby compromising confidentiality. The weakness is a classic memory protection flaw and falls under information exposure.
Affected Systems
Apple iOS, iPadOS, macOS, tvOS, visionOS, and watchOS are affected. The issue is mitigated in iOS 26.6 and iPadOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, macOS Tahoe 26.6, tvOS 26.6, visionOS 26.6, and watchOS 26.6.
Risk and Exploitability
The CVSS score of 5.5 indicates a moderate impact. The EPSS score of < 1% shows that the likelihood of exploitation is very low, and the vulnerability is not listed in the CISA KEV catalog. The likely attack vector is through a third‑party application that exploits the memory handling error; this inference is necessary as the exact method is not described.
OpenCVE Enrichment