Skip to content
AppleCVE-2026-84520

Apple macOS: buffer overflow

Critical9.8CVE-2026-84520 · Published Sep 14, 2026 · updated Sep 16, 2026

A buffer overflow was addressed with improved size validation. This issue is fixed in macOS Golden Gate 27. A local attacker may be able to cause unexpected system termination or corrupt kernel memory.

Apple advisory

Affected versions

PackageAffectedFixed in
macOS
Product
< 2727
Details and references
CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity from
CISA (its enrichment of the CVE record)
Weakness
CWE-120

More Apple advisories

All Apple
Advisory
Apple macOS: path traversal
Medium5.5Sep 14
Apple iOS and iPadOS: out-of-bounds read
Medium5.5Sep 14
A privacy issue was addressed with improved state management
High7.5Sep 14
Apple iOS and iPadOS: improper access control
Medium5.5Sep 14
Apple macOS: protection mechanism failure
Medium4.4Sep 14
Apple macOS: path traversal
Medium5.5Sep 14

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.