Junglewise Threat Intelligence

CVE-2026-28896: Apple macOS kernel memory handling vulnerability

CVE-2026-28896 · Severity: info · Published 2026-07-27

Technologies: Apple macOS Sonoma. Vendors: Apple.

Executive brief

A security vulnerability has been identified in macOS that could allow an attacker to cause a sudden system crash or access sensitive information stored in the computer's core memory (kernel). This issue affects macOS Sequoia and Sonoma versions. Apple has released software updates to address this memory handling flaw, and users are encouraged to update their systems to maintain stability and data privacy.

Technical details

A memory handling vulnerability exists in the macOS kernel. The flaw allows an attacker to trigger an unexpected system termination (denial of service) or perform an out-of-bounds read to access sensitive kernel memory. The root cause was addressed by Apple through improved memory management and validation. The vulnerability is fixed in macOS Sequoia 15.7.8 and macOS Sonoma 14.8.8. While the specific attack vector is not explicitly detailed in the advisory, kernel memory leaks typically require local execution or interaction with vulnerable system services.

Affected products

  • Apple macOS Sequoia before 15.7.8
  • Apple macOS Sonoma before 14.8.8

Timeline

  • 2026-07-27: advisory
  • 2026-07-27: patched

References

Related threats