THE content discusses a critical vulnerability in macOS and iOS, identified as CVE-2026-39868, which allows unprivileged applications to corrupt kernel memory via the DTrace subsystem. This vulnerability has a CVSS score of 9.1 and affects versions prior to updates 26.5.2, 14.8.8, 15.7.8, and 26.6. Apple has issued patches to address the issue, which was published publicly on June 29, 2026. Users are urged to update immediately as the exploit details are now available, raising the potential for abuse. The flaw can enable crashes or tampering with kernel memory without elevated permissions.
Apple fixes DTrace kernel flaw CVE-2026-39868 in macOS, iOS
CyberSIXT Evidence Panel
Article by CyberSIXT