CVE-2026-28931
A buffer overflow in the NFS client can corrupt kernel memory. The flaw is fixed in iOS 26.6, iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, and watchOS 26.6. Updating to these versions removes the risk.
An official fix is available, so this entry is kept for 30 days and then removed automatically.
Who is affected
Apple devices running iOS, iPadOS, macOS Tahoe, tvOS, or watchOS before version 26.6.
Real-world impact
An attacker could exploit the overflow to corrupt kernel memory, potentially taking control of the device or accessing sensitive data.
Why this severity
The CVSS score of 9.8 reflects that the flaw can be triggered over the network without any user interaction or special privileges, and it can compromise the confidentiality, integrity, and availability of the entire system.
What to do about it
- 01Update your device to iOS 26.6, iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, or watchOS 26.6 or later.
- 02Restart the device after the update.
NVD-referenced vendor advisory
Timeline
- Jul 27, 2026 · 3d agoPublishedDisclosed and added to the National Vulnerability Database.
- Jul 28, 2026 · 2d agoOfficial fix availableA vendor patch or mitigation now exists — see the remediation steps above.