Description
A double free issue was addressed with improved memory management. This issue is fixed in macOS Golden Gate 27. An app may be able to cause unexpected system termination.
Published: 2026-09-14
Score: 5.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Denial of Service
Action: Apply Patch
AI Analysis

Impact

A double free error in memory management has been identified in macOS Golden Gate. The flaw can cause the operating system to terminate unexpectedly, resulting in a service interruption for all users on the infected system. This vulnerability is a classic double free condition, an instance of improper deallocation that can destabilize system execution.

Affected Systems

Apple macOS, specifically the Golden Gate release. The issue is fixed in macOS Golden Gate 27 and earlier versions are potentially vulnerable.

Risk and Exploitability

The likely attack vector is a malicious application that triggers the double free condition; the exact exploitation path is not detailed in the advisory. The EPSS score of < 1% indicates a very low probability of exploitation. The vulnerability is not listed in the CISA KEV, and the CVSS score of 5.5 indicates moderate severity vulnerability, contributing to potential service disruption.

Generated by OpenCVE AI on September 20, 2026 at 18:48 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade macOS to Golden Gate 27 or later to apply the memory management fix
  • Until the upgrade, restrict or terminate the execution of third‑party applications that may trigger the double free vulnerability
  • Continuously monitor Apple security advisories for any further updates or workarounds

Generated by OpenCVE AI on September 20, 2026 at 18:48 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

References
History

Sun, 20 Sep 2026 19:15:00 +0000

Type Values Removed Values Added
Title Double Free in macOS Memory Management Causes Unexpected Termination

Thu, 17 Sep 2026 22:30:00 +0000

Type Values Removed Values Added
Title Double Free in macOS Memory Management Causes Unexpected Termination

Thu, 17 Sep 2026 17:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 16 Sep 2026 15:45:00 +0000

Type Values Removed Values Added
Weaknesses CWE-415
CPEs cpe:2.3:o:apple:macos:*:*:*:*:*:*:*:*
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}


Wed, 16 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
Title Double Free Memory Error Causing System Termination in macOS
Weaknesses CWE-415

Tue, 15 Sep 2026 09:15:00 +0000

Type Values Removed Values Added
Title Double Free Memory Error Causing System Termination in macOS
Weaknesses CWE-415

Tue, 15 Sep 2026 02:15:00 +0000

Type Values Removed Values Added
First Time appeared Apple
Apple macos
Vendors & Products Apple
Apple macos

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description A double free issue was addressed with improved memory management. This issue is fixed in macOS Golden Gate 27. An app may be able to cause unexpected system termination.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apple

Published:

Updated: 2026-09-17T16:51:48.643Z

Reserved: 2026-09-01T21:13:17.753Z

Link: CVE-2026-84558

cve-icon Vulnrichment

Updated: 2026-09-17T16:01:10.442Z

cve-icon NVD

Status : Modified

Published: 2026-09-14T21:17:31.863

Modified: 2026-09-17T17:16:49.670

Link: CVE-2026-84558

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T19:00:04Z

Weaknesses