Impact
An out-of-bounds read was identified in macOS, leading to a vulnerability that could allow a remote attacker to cause unexpected system termination. The flaw is a classic buffer read beyond the boundary, classified as CWE‑125, and can destabilize the operating system without requiring user interaction.
Affected Systems
Apple macOS systems running pre‑release versions prior to macOS Golden Gate 27, macOS Sequoia 15.8, or macOS Tahoe 26.7 are impacted. The vulnerability was addressed in those releases and later.
Risk and Exploitability
The CVSS score of 7.5 indicates a high severity while the EPSS score is currently unavailable, making the exact exploitation probability uncertain. The vulnerability appears to be remotely exploitable, as a remote attacker may trigger a crash by manipulating the input that leads issue is not listed in the CISA KEV catalog, publicly known exploits have not yet been confirmed, but the impact remains significant for affected systems.
OpenCVE Enrichment