cbcvebase.
CVE-2018-4438
published 2019-04-03

CVE-2018-4438: A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue affected versions prior to iOS 12.1.1, tvOS…

high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
EXPLOIT
A logic issue existed resulting in memory corruption. This was addressed with improved state management. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9.

Affected

13 ranges
VendorProductVersion rangeFixed in
appleicloud< 7.97.9
appleicloud_for_windows
appleios
appleiphone_os< 12.1.112.1.1
appleitunes< 12.9.212.9.2
appleitunes_12.9.2_for_windows
applesafari< 12.0.212.0.2
applesafari
appletvos< 12.1.112.1.1
appletvos
applewatchos< 5.1.25.1.2
applewatchos
debianwebkit2gtk< webkit2gtk 2.22.3-1 (bookworm)webkit2gtk 2.22.3-1 (bookworm)

CVSS provenance

nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
osv8.8HIGH