CVE-2018-4407
high · 8.8A memory corruption issue was addressed with improved validation. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
8.8
CVSS
22.0%
EPSS (exploit prob.)
98th
EPSS percentile
2019-04-03
Published
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| apple | iphone_os | < 12.0 |
| apple | mac_os_x | < 10.14 |
| apple | tvos | < 12 |
| apple | watchos | < 5.0 |
Check a specific version with /api/v1/cve/match.
References
- http://packetstormsecurity.com/files/172832/iOS-11.4.1-macOS-10.13.6-icmp_error-Heap-Buffer-Overflow.html
- https://support.apple.com/kb/HT209106
- https://support.apple.com/kb/HT209107
- https://support.apple.com/kb/HT209108
- https://support.apple.com/kb/HT209139
- https://support.apple.com/kb/HT209193
- http://packetstormsecurity.com/files/172832/iOS-11.4.1-macOS-10.13.6-icmp_error-Heap-Buffer-Overflow.html
- https://support.apple.com/kb/HT209106
- https://support.apple.com/kb/HT209107
- https://support.apple.com/kb/HT209108
- https://support.apple.com/kb/HT209139
- https://support.apple.com/kb/HT209193
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2018-4407