All findings

CVE-2026-64744, CVE-2026-64775 high

Apple's July release directly credits Xint on two kernel CVEs

Apple directly credits Xint-assisted research on a kernel information leak and an uninitialized-memory issue in its July 27 releases.

Bug class
Kernel information disclosure, uninitialized memory, and memory corruption
Affected codebase
Apple kernel
Credited system
Xint Code
Disclosed
July 27, 2026
Attribution
Direct source attribution
Severity
high
Source status: Apple's July 27 security notes directly name Xint in both accepted reporter credits.

Summary

The two accepted Apple kernel reports cover unintended kernel-memory exposure and unsafe use of uninitialized memory. They extend Xint’s direct affected- vendor record beyond the existing May Apple cluster.


References


Catalogued in the Bugflation public ledger. Disagree with the attribution or severity label? Email the desk.