CVE-2018-4147 — Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple Icloud
CWE-119 — Improper Restriction of Operations within the Bounds of a Memory Buffer10 documents4 sources
Severity
9.8CRITICALNVD
EPSS
0.6%
top 30.92%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 11
Latest updateMay 14
Description
In iCloud for Windows before 7.3, Safari before 11.0.3, iTunes before 12.7.3 for Windows, and iOS before 11.2.5, multiple memory corruption issues exist and were addressed with improved memory handling.
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9