Executive brief
A vulnerability in Apple's operating systems could allow a malicious application to access sensitive information from the system's kernel memory. This could potentially expose private data or system secrets that are normally protected. Users should update their devices to the latest software versions to resolve this issue.
Technical details
A memory disclosure vulnerability exists in the kernel of multiple Apple operating systems, including iOS, macOS, and watchOS. The root cause is improper memory handling, which allows a locally installed application to read sensitive data from kernel memory. This is typically classified as an information disclosure vulnerability. Apple has addressed the issue by improving memory handling in the affected components. Patches are available in iOS 26.6, macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, and other concurrent OS updates.
Affected products
- Apple iOS and iPadOS < 26.6
- Apple macOS Sequoia < 15.7.8
- Apple macOS Sonoma < 14.8.8
- Apple macOS Tahoe < 26.6
- Apple tvOS < 26.6
- Apple visionOS < 26.6
- Apple watchOS < 26.6
Timeline
- 2026-07-27: disclosed
- 2026-07-27: patched