Executive brief
A vulnerability in macOS could allow a malicious application to modify protected parts of the file system. This could lead to unauthorized changes to system files or settings that are normally restricted. Users should update to the latest versions of macOS to resolve this issue.
Technical details
A vulnerability exists in macOS due to improper handling of symbolic links (symlinks). A local malicious application could exploit this flaw to bypass file system protections and modify restricted directories or files. The issue was addressed by improving symlink validation and handling within the operating system. The vulnerability affects macOS Sequoia versions prior to 15.7.8, macOS Sonoma versions prior to 14.8.8, and macOS Tahoe versions prior to 26.6.
Affected products
- Apple macOS Sequoia Before 15.7.8
- Apple macOS Sonoma Before 14.8.8
- Apple macOS Tahoe Before 26.6
Timeline
- 2026-07-27: disclosed
- 2026-07-27: advisory
- 2026-07-27: patched