Executive brief
A logic flaw in macOS could allow a malicious application to intercept network traffic intended for other processes on the same computer. This could lead to the exposure of sensitive data transmitted over the network or the disruption of communications for legitimate software. Users should update to the latest version of macOS to resolve this issue.
Technical details
A logic issue was identified in macOS that could allow a local application to intercept network connections intended for a different process. The vulnerability stems from insufficient restrictions on how processes handle network traffic, potentially allowing for a man-in-the-middle scenario between local applications. Apple addressed this issue by implementing improved restrictions in the networking logic. The vulnerability affects macOS Sequoia versions prior to 15.7.8, macOS Sonoma versions prior to 14.8.8, and macOS Tahoe versions prior to 26.6. Exploitation requires a malicious app to be running on the target system.
Affected products
- Apple macOS Sequoia < 15.7.8
- Apple macOS Sonoma < 14.8.8
- Apple macOS Tahoe < 26.6
Timeline
- 2026-07-27: disclosed
- 2026-07-27: patched