Junglewise Threat Intelligence

CVE-2026-39877: Apple macOS kernel memory corruption information disclosure

CVE-2026-39877 · Severity: info · Published 2026-07-27

Technologies: Apple macOS Sonoma. Vendors: Apple.

Executive brief

A security vulnerability in macOS could allow a malicious application to access sensitive information stored in the system's kernel memory. This type of memory is typically restricted to the core operating system to ensure stability and security. If exploited, this could lead to the disclosure of private system data, though it requires a malicious app to already be running on the device.

Technical details

A memory corruption vulnerability exists in the macOS kernel due to improper memory handling. A local attacker can exploit this by running a specially crafted application to disclose sensitive kernel memory. The vulnerability is classified as an information disclosure issue. Apple addressed the flaw by improving memory handling logic within the affected components. The fix is available in macOS Sequoia 15.7.8 and macOS Sonoma 14.8.8.

Affected products

  • Apple macOS Sequoia before 15.7.8
  • Apple macOS Sonoma before 14.8.8

Timeline

  • 2026-07-27: advisory
  • 2026-07-27: patched

References

Related threats