Executive brief
A security vulnerability in macOS could allow a malicious application to gain full administrative (root) control over a computer. This would allow the app to bypass security protections, access all user data, and modify system files. The issue affects several versions of macOS and has been addressed in the latest software updates.
Technical details
A logic vulnerability exists in macOS that allows for local privilege escalation to root. The flaw was addressed by implementing improved logic checks within the operating system. An attacker must be able to execute a malicious application on the target system to exploit this vulnerability. Successful exploitation grants the attacker highest-level system privileges, effectively bypassing all local security controls. The issue is resolved in macOS Sequoia 15.7, macOS Sonoma 14.8, and macOS Tahoe 26.
Affected products
- Apple macOS Sequoia before 15.7
- Apple macOS Sonoma before 14.8
- Apple macOS Tahoe before 26
Timeline
- 2025-09-15: patched: Initial release of patches for Tahoe, Sequoia, and Sonoma.
- 2026-05-26: disclosed: Public disclosure via NVD and Apple security advisories.