CVE-2018-4313Improper Input Validation in Apple Tvos

Severity
5.5MEDIUMNVD
EPSS
0.1%
top 80.04%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 3
Latest updateMay 14

Description

A consistency issue existed in the handling of application snapshots. The issue was addressed with improved handling of message deletions. This issue affected versions prior to iOS 12, tvOS 12, watchOS 5.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 1.8 | Impact: 3.6

Affected Packages6 packages

NVDapple/tvos< 12
NVDapple/watchos< 5.0
Appleapple/tvos12
NVDapple/iphone_os< 12.0

🔴Vulnerability Details

1
GHSA
GHSA-9w92-jjmg-w6pj: A consistency issue existed in the handling of application snapshots2022-05-14

📋Vendor Advisories

3
Apple
CVE-2018-4313: watchOS 52018-09-17
Apple
CVE-2018-4313: iOS 122018-09-17
Apple
CVE-2018-4313: tvOS 122018-09-17