Impact
An integer overflow occurs while parsing a maliciously crafted document, allowing the reader to access memory outside the intended bounds. This vulnerability is classified as CWE-190.
Affected Systems
The affected releases are macOS versions prior to Golden Gate 27, Sequoia 15.8, and Tahoe 26.7. Users who have not yet applied these updates remain vulnerable.
Risk and Exploitability
The CVSS score of 5.5 indicates medium severity, while the EPSS score of less than 1% suggests a very low likelihood of exploitation. The issue is not listed in the CISA KEV catalog.
OpenCVE Enrichment