Executive brief
macOS is the operating system used on Apple computers to run applications and manage user data. A resource exhaustion vulnerability allows a remote attacker to cause a denial-of-service condition, potentially rendering an affected Mac unresponsive or forcing it to restart, disrupting user productivity and business operations.
Technical details
This vulnerability is a resource exhaustion issue that was addressed with improved input validation. The flaw allows a remote attacker to exhaust system resources without requiring authentication or user interaction, resulting in a denial-of-service condition. The exact vulnerable component is not specified in the advisory, but the attack vector is remote. The issue has been patched in macOS Golden Gate 27, macOS Sequoia 15.8, and macOS Tahoe 26.7, released on September 14, 2026.
Affected products
- Apple macOS Golden Gate 27
- Apple macOS Sequoia 15.8
- Apple macOS Tahoe 26.7
Timeline
- 2026-09-14: disclosed
- 2026-09-14: patched