Exploitation Summary
EIP tracks 1 public exploit for CVE-2016-7621. PoCs published by Google Security Research.
AI-analyzed exploit summary This exploit leverages a reference count overflow in the XNU kernel's mach port handling (CVE-2026-7621) to achieve local privilege escalation by impersonating kernel-owned ports and intercepting task ports from other processes.
Description
An issue was discovered in certain Apple products. iOS before 10.2 is affected. macOS before 10.12.2 is affected. watchOS before 3.1.3 is affected. The issue involves the "Kernel" component. It allows local users to execute arbitrary code in a privileged context or cause a denial of service (use-after-free) via unspecified vectors.
Exploits (1)
This exploit leverages a reference count overflow in the XNU kernel's mach port handling (CVE-2026-7621) to achieve local privilege escalation by impersonating kernel-owned ports and intercepting task ports from other processes.
References (6)
Scores
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H