Junglewise Threat Intelligence

CVE-2026-28982: Apple macOS race condition in Kernel memory management

CVE-2026-28982 · Severity: info · Published 2026-07-27

Technologies: Apple macOS Sequoia. Vendors: Apple.

Executive brief

A security vulnerability has been identified in Apple macOS that could allow a remote user to crash the system or corrupt its core memory. This affects the kernel, which is the most sensitive part of the operating system responsible for managing hardware and software resources. An exploit could lead to a complete system failure or allow unauthorized access to protected data.

Technical details

A race condition exists in the macOS kernel due to insufficient locking mechanisms. This vulnerability can be triggered by a remote attacker to cause kernel memory corruption or a denial-of-service (system crash). The issue was addressed by implementing improved locking logic in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, and macOS Tahoe 26.6. While the advisory mentions a 'remote user,' specific preconditions such as authentication or specific network services required are not detailed in the source.

Affected products

  • Apple macOS Sequoia before 15.7.8
  • Apple macOS Sonoma before 14.8.8
  • Apple macOS Tahoe before 26.6

Timeline

  • 2026-07-27: disclosed
  • 2026-07-27: patched
  • 2026-07-27: advisory

References

Related threats