CVE-2026-43773

9.8

Apple · macOS

An out-of-bounds read vulnerability in Apple macOS allows unauthenticated attackers to trigger system termination or kernel memory corruption via a maliciously crafted disk image.

Executive summary

A critical out-of-bounds read vulnerability in Apple macOS poses a severe risk of system instability and kernel memory corruption, potentially leading to full system compromise.

Vulnerability

The vulnerability is an out-of-bounds read issue occurring during the mounting of disk images. It is exploitable by an unauthenticated attacker who can supply a maliciously crafted disk image to the system.

Business impact

The potential for kernel memory corruption and system termination represents a significant threat to business continuity and data integrity. With a CVSS score of 9.8, this flaw is critical, as it allows for unauthorized system-level disruption and potentially provides a vector for further exploitation that could lead to complete loss of confidentiality, integrity, and availability.

Remediation

Immediate Action: Update all affected macOS systems to the fixed versions: macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, or macOS Tahoe 26.6 immediately.

Proactive Monitoring: Monitor system logs for unexpected crashes or kernel-related errors that may indicate an attempt to mount malicious disk images.

Compensating Controls: Restrict the ability to mount external or untrusted disk images via mobile device management (MDM) policies or endpoint security software until patches can be applied.

Exploitation status

Public Exploit Available: No

Analyst recommendation

Given the critical severity and the potential for kernel-level impact, this vulnerability must be treated as a high-priority patching item. Organizations should deploy the vendor-supplied updates across their fleet as quickly as possible to prevent potential exploitation of this memory corruption flaw.

More Apple CVEs

Sources