CVE-2026-43773
9.8Apple · macOS
An out-of-bounds read vulnerability in Apple macOS allows unauthenticated attackers to trigger system termination or kernel memory corruption via a maliciously crafted disk image.
Executive summary
A critical out-of-bounds read vulnerability in Apple macOS poses a severe risk of system instability and kernel memory corruption, potentially leading to full system compromise.
Vulnerability
The vulnerability is an out-of-bounds read issue occurring during the mounting of disk images. It is exploitable by an unauthenticated attacker who can supply a maliciously crafted disk image to the system.
Business impact
The potential for kernel memory corruption and system termination represents a significant threat to business continuity and data integrity. With a CVSS score of 9.8, this flaw is critical, as it allows for unauthorized system-level disruption and potentially provides a vector for further exploitation that could lead to complete loss of confidentiality, integrity, and availability.
Remediation
Immediate Action: Update all affected macOS systems to the fixed versions: macOS Sequoia 15.7.8, macOS Sonoma 14.8.8, or macOS Tahoe 26.6 immediately.
Proactive Monitoring: Monitor system logs for unexpected crashes or kernel-related errors that may indicate an attempt to mount malicious disk images.
Compensating Controls: Restrict the ability to mount external or untrusted disk images via mobile device management (MDM) policies or endpoint security software until patches can be applied.
Exploitation status
Public Exploit Available: No
Analyst recommendation
Given the critical severity and the potential for kernel-level impact, this vulnerability must be treated as a high-priority patching item. Organizations should deploy the vendor-supplied updates across their fleet as quickly as possible to prevent potential exploitation of this memory corruption flaw.