Executive brief
A vulnerability in macOS could allow a malicious application to access sensitive information stored in the system's kernel memory. This type of memory is typically restricted to the core operating system, and its exposure could lead to the disclosure of private data or help facilitate more complex attacks. Apple has released software updates to address this issue by improving how the system verifies data boundaries.
Technical details
A kernel memory disclosure vulnerability exists in multiple versions of macOS due to insufficient bounds checking. An attacker-controlled application can exploit this flaw to read sensitive information from kernel memory. The issue was addressed by implementing improved bounds checks in the affected components. The vulnerability is fixed in macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, and macOS Tahoe 26.6. Exploitation requires the attacker to have the ability to run an application on the target system.
Affected products
- Apple macOS Sequoia before 15.7.8
- Apple macOS Sonoma before 14.8.8
- Apple macOS Tahoe before 26.6
Timeline
- 2026-07-27: disclosed
- 2026-07-27: patched