Track vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
9.1

CVE-2026-43790: macOS may crash or corrupt memory from remote attack

CVE-2026-43790 · published 14 days ago
Summary

Some older versions of macOS could be tricked by a remote attacker into crashing the computer or corrupting the core system memory. This can lead to loss of work or make the system vulnerable to further attacks. Install the latest updates (macOS Golden Gate 27, Sequoia 15.8, Tahoe 26.7) to protect your machines.

What to do

The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.

Affected software
VendorProductAffected versions
apple macos < 15.8
>= 15.0, < 15.8
>= 26.0, < 26.7
Original advisory text
The issue was addressed with improved memory handling. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A remote attacker may be able to cause unexpected system te...
The issue was addressed with improved memory handling. This issue is fixed in macOS Golden Gate 27, macOS Sequoia 15.8, macOS Tahoe 26.7. A remote attacker may be able to cause unexpected system termination or corrupt kernel memory.
References
Severity
9.1 Critical
Exploitation
EPSS <1%
Type
CWE-787Out-of-bounds Write
Timeline
Published14 Sep 2026
Updated27 Sep 2026
First seen14 Sep 2026
Sources
CVE-2026-43790 · MITRE
Track software like this
Free during beta