In the Linux kernel, the following vulnerability has been resolved:
nvme-apple: Prevent shared tags across queues on Apple A11
On Apple A11, tags of pending commands must be unique across the admin
and IO queues, else the firmware crashes with
"duplicate tag error for tag N", with N being the tag.
Apply the existing workaround for M1 of reserving two tags for the admin
queue to A11.
CVE-2026-72131
NONE
EPSS 0.20%
Updated Aug 17, 2026
Apple
https://git.kernel.org/stable/c/59cef6abc924a84824b0c3f563a7fe74cd5fc7a4
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/6fe0687245e8406bf26143bd45eb16441bbe5280
416baaa9-dc9f-4396-8d5f-8c081fb06d67
https://git.kernel.org/stable/c/b7d9aaedf024bb6c0bb6a205848861d888eb1afa
416baaa9-dc9f-4396-8d5f-8c081fb06d67
CVE Details
CVE ID
CVE-2026-72131
Published Date
Aug 15, 2026
Vendor
Apple
Severity
NONE
Exploit Prediction (EPSS)
Probability of Exploit
0.20%
Likelihood of exploitation in next 30 days
Percentile:
9.6th percentile (higher than 9.6% of all CVEs)
Standard patching cycle
Impact
Minimal impact
Source
View Advisory