CVE-2018-4398Improper Input Validation in Apple Icloud

Severity
7.5HIGHNVD
EPSS
0.5%
top 34.15%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 3
Latest updateMay 14

Description

An issue existed in the method for determining prime numbers. This issue was addressed by using pseudorandom bases for testing of primes. This issue affected versions prior to iOS 12.1, macOS Mojave 10.14.1, tvOS 12.1, watchOS 5.1, iTunes 12.9.1, iCloud for Windows 7.8.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages6 packages

NVDapple/tvos< 12.1
NVDapple/icloud< 7.8
NVDapple/itunes< 12.9.1
NVDapple/watchos< 5.1
NVDapple/mac_os_x< 10.14.1

🔴Vulnerability Details

2
GHSA
GHSA-fpw7-ffc3-qq83: An issue existed in the method for determining prime numbers2022-05-14
CVEList
CVE-2018-4398: An issue existed in the method for determining prime numbers2019-04-03

📋Vendor Advisories

6
Apple
CVE-2018-4398: iTunes 12.9.1 for Windows2018-10-30
Apple
CVE-2018-4398: tvOS 12.12018-10-30
Apple
CVE-2018-4398: iCloud for Windows 7.82018-10-30
Apple
CVE-2018-4398: watchOS 5.12018-10-30
Apple
CVE-2018-4398: iOS 12.12018-10-30
CVE-2018-4398 — Improper Input Validation in Apple | cvebase