Impact
An application on macOS may read and disclose kernel memory through an information‑leak vulnerability. This can expose private system data to the app, potentially compromising the confidentiality of the device and any sensitive information it holds. The CVSS score of 5.5 indicates a moderate severity of the vulnerability.
Affected Systems
Apple macOS platforms are affected. The vulnerability is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, and macOS Tahoe 26.6. All earlier releases of these macOS versions are vulnerable.
Risk and Exploitability
The EPSS score of <1% indicates a very low likelihood of exploitation, and the vulnerability is not listed in the CISA KEV catalog. The CVSS score of 5.5 reflects moderate threat potential. The likely attack vector is an application running with sufficient privileges attempting to read kernel space, though exact conditions are not detailed.
OpenCVE Enrichment