Description
A race condition was addressed with additional validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to cause unexpected system termination.
Published: 2026-09-14
Score: 4.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Unexpected system termination (Denial of Service)
Action: Immediate Patch
AI Analysis

Impact

A race condition present in certain macOS builds enables an application to trigger an unexpected system termination, causing the operating system to crash. This flaw is a concurrency bug (CWE‑362) that ends with a sudden OS shutdown when the race is triggered, leading to a denial‑of‑service at the system level.

Affected Systems

Apple macOS releases prior to the patch—macOS Golden Gate 27, macOS Sequoia 15.8, and macOS Tahoe 26.7—are vulnerable. Any system still running one of these versions without applying the update is at risk, while newer releases are considered patched.

Risk and Exploitability

The EPSS score of <1 % indicates a very low likelihood of exploitation, and the vulnerability is not listed in CISA’s KEV catalog. The CVSS score of 4.7 reflects moderate severity. Exploitation would require a race condition to occur, and based on the description it is inferred that the attack may involve a privileged or buggy application. Overall risk is moderate for unpatched systems and low for those that have updated.

Generated by OpenCVE AI on September 20, 2026 at 20:26 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update macOS to the latest available release that includes the patch for the race condition.
  • Restart the computer to ensure all system processes are detached and that the crash issue is resolved.
  • Configure the system to automatically install macOS updates as soon as they become available.

Generated by OpenCVE AI on September 20, 2026 at 20:26 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Sun, 20 Sep 2026 20:45:00 +0000

Type Values Removed Values Added
Title Race Condition Enabling Unexpected System Termination

Wed, 16 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 16 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-362
CPEs cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
Metrics cvssV3_1

{'score': 4.7, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:H'}


Wed, 16 Sep 2026 12:30:00 +0000

Type Values Removed Values Added
Title Race Condition Allowing Unexpected System Termination in macOS
Weaknesses CWE-362

Tue, 15 Sep 2026 11:45:00 +0000

Type Values Removed Values Added
Title Race Condition Allowing Unexpected System Termination in macOS
Weaknesses CWE-362

Tue, 15 Sep 2026 08:00:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Vendors & Products Apple
Apple macos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description A race condition was addressed with additional validation. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. An app may be able to cause unexpected system termination.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-16T15:34:39.650Z

Reserved: 2026-09-01T21:13:17.752Z

Link: CVE-2026-84550

cve-icon Vulnrichment

Updated: 2026-09-16T15:34:22.442Z

cve-icon NVD

Status : Modified

Published: 2026-09-14T21:17:31.137

Modified: 2026-09-16T16:17:19.577

Link: CVE-2026-84550

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T20:30:05Z

Weaknesses
  • CWE-362

    Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')