Unrated severityNVD Advisory· Published Jul 27, 2026· Updated Jul 29, 2026
CVE-2026-28931
CVE-2026-28931
Description
A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 26.6 and iPadOS 26.6, macOS Tahoe 26.6, tvOS 26.6, watchOS 26.6. Connecting to a malicious NFS server may lead to kernel memory corruption.
Affected products
3- Range: 26.6
- Range: 26.6
- Range: 26.6
Patches
Vulnerability mechanics
References
4News mentions
2- Apple Patches Everything (July 2026), (Wed, Jul 29th)SANS Internet Storm Center · Jul 29, 2026
- Apple iOS 26.6 Fixes Flaws Enabling Kernel Code Execution, Root Access and Sandbox EscapeCyber Security News · Jul 28, 2026