Impact
The vulnerability is a race condition (identified as CWE-362) that can cause the operating system to terminate unexpectedly when an application triggers rapid, concurrent state changes. An application may exploit the improper handling of concurrent operations to provoke this termination. The effect is a sudden loss of system availability, with no immediate threat to data confidentiality or integrity evident from the description.
Affected Systems
Apple operating systems are affected, including iOS 26.7, iOS 27, iPadOS 26.7, iPadOS 27, macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7, tvOS 27, visionOS 27, and watchOS 27. Devices running any of these versions may be vulnerable.
Risk and Exploitability
The EPSS score of < 1% indicates a very low probability of exploitation, and the issue is not listed in the CISA KEV catalog, suggesting no known public exploits malicious or poorly written application that launches concurrent operations to trigger the race condition. Because the flaw can cause a system crash, its impact is reflected in potential loss of service. The exact likelihood of exploitation cannot be quantified, but the absence of known exploits and the possibility of a client‑side trigger suggest a moderate to high risk depending on exposure to third‑party apps. Based on the description, the likely attack vector is an application that initiates rapid, concurrent state changes, inferred from the race‑condition nature of the flaw.
OpenCVE Enrichment