CVE-2026-28931
Apple iOS and iPadOS, macOS, tvOS
A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, watchOS 26.6. Connecting to a malicious NFS server may lead to kernel memory corruption.
- CVSS
- 8.8
- EPSS
- 0.28% 20.4% percentile
- CISA KEV
- Not listed
- Published
- 2026.07.28