The issue was addressed with improved bounds checks. This issue is fixed in iOS 16.2 and iPadOS 16.2, macOS Ventura 13.1, tvOS 16.2. Connecting to a malicious NFS server may lead to arbitrary code execution with kernel privileges.
2022-12-15T19:15:26.773
2025-04-18T19:15:44.880
Modified
CVSSv3.1: 7.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | apple | ipados | < 16.2 | Yes |
Operating System | apple | iphone_os | < 16.2 | Yes |
Operating System | apple | macos | < 13.1 | Yes |
Operating System | apple | tvos | < 16.2 | Yes |