Junglewise Threat Intelligence

CVE-2026-64744: Apple macOS information leakage in kernel memory

CVE-2026-64744 · Severity: info · Published 2026-07-27

Technologies: Apple macOS Sequoia. Vendors: Apple.

Executive brief

A security vulnerability in macOS could allow a malicious application to access sensitive information stored in the system's kernel memory. This type of leak can potentially expose private data or help attackers bypass other security protections. Apple has released software updates to address this issue by improving how the system validates certain data requests.

Technical details

An information leakage vulnerability exists in the macOS kernel where insufficient input validation allows a local application to read sensitive kernel memory. The issue was addressed through improved validation checks in the affected components. An attacker must be able to execute code on the target system (typically via a malicious app) to exploit this vulnerability. Successful exploitation results in the disclosure of kernel memory, which could be used to facilitate further attacks or bypass kernel ASLR. Fixes are available in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, and macOS Tahoe 26.6.

Affected products

  • Apple macOS Sequoia before 15.7.8
  • Apple macOS Sonoma before 14.8.8
  • Apple macOS Tahoe before 26.6

Timeline

  • 2026-07-27: disclosed
  • 2026-07-27: patched

References

Related threats