CVE-2026-84607

Apple · iOS, iPadOS, macOS, tvOS, visionOS, watchOS

A race condition vulnerability in multiple Apple operating systems allows a sandboxed application to execute arbitrary code with kernel privileges.

Executive summary

A critical race condition vulnerability in Apple operating systems allows sandboxed applications to escalate privileges and achieve arbitrary code execution at the kernel level.

Vulnerability

This flaw is a race condition resulting from improper state management, which can be exploited by an authenticated, sandboxed application to gain kernel-level code execution.

Business impact

The ability to execute code with kernel privileges represents a total compromise of the affected device. An attacker who successfully exploits this vulnerability can bypass all system security controls, access sensitive user data, and persist within the environment. While the CVSS score of 7.8 reflects a requirement for local access, the resulting impact on confidentiality, integrity, and availability is total, necessitating immediate patching of all managed Apple endpoints.

Remediation

Immediate Action: Apply the vendor-supplied updates (iOS 26.7/27, macOS 15.8/26.7/27, and corresponding versions for tvOS, visionOS, and watchOS) as soon as possible.

Proactive Monitoring: Monitor device logs for unusual process activity or unauthorized attempts to access system-level resources by non-privileged applications.

Compensating Controls: Enforce strict mobile device management (MDM) policies to limit the installation of untrusted or third-party applications that could potentially serve as the vector for a sandboxed exploit.

Exploitation status

Public Exploit Available: No (exploit_available: false)

Analyst recommendation

The risk of kernel-level code execution necessitates a high-priority patching cycle for all affected Apple hardware. Organizations should prioritize updating devices that handle sensitive corporate data and ensure that fleet management software is used to verify that all endpoints have successfully transitioned to the secure versions listed in the vendor advisory.

More Apple CVEs all →

History

CVE Brief tracked this CVE 2 days before it had a CVSS score.

  1. Disclosed CVE record published
  2. Collected by CVE Brief No CVSS score yet; tracked as early warning
  3. CVSS score assigned 7.8 (3.1)
  4. Analyst report written

Sources