Executive brief
A security vulnerability has been identified in Apple macOS that could allow a remote attacker to disrupt the system's normal operations. By sending specially crafted input, an attacker may be able to cause a denial-of-service condition, potentially leading to system crashes or unresponsiveness. This issue affects several versions of macOS, including Sequoia, Sonoma, and Tahoe.
Technical details
A denial-of-service (DoS) vulnerability exists in Apple macOS Sequoia, Sonoma, and Tahoe due to improper input validation. A remote attacker can exploit this vulnerability by sending malformed data to the affected system, triggering a crash or resource exhaustion. The issue was addressed by improving input validation mechanisms within the operating system. Patches are available in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, and macOS Tahoe 26.6.
Affected products
- Apple macOS Sequoia Before 15.7.8
- Apple macOS Sonoma Before 14.8.8
- Apple macOS Tahoe Before 26.6
Timeline
- 2026-07-27: advisory
- 2026-07-27: patched