CVE-2018-4443
published 2019-04-03CVE-2018-4443: A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari…
PriorityP179high8.8CVSS 3.0
AVNACLPRNUIRSUCHIHAH
ITWEXPLOITVulnCheck KEV
Exploited in the wild
EPSS
5.85%
92.4th percentile
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | icloud | < 7.9 | 7.9 |
| apple | icloud_for_windows | — | — |
| apple | ios | — | — |
| apple | iphone_os | < 12.1.1 | 12.1.1 |
| apple | itunes | < 12.9.2 | 12.9.2 |
| apple | itunes_12.9.2_for_windows | — | — |
| apple | safari | < 12.0.2 | 12.0.2 |
| apple | safari | — | — |
| apple | tvos | < 12.1.1 | 12.1.1 |
| apple | tvos | — | — |
| apple | watchos | < 5.1.2 | 5.1.2 |
| apple | watchos | — | — |
| debian | webkit2gtk | < webkit2gtk 2.22.3-1 (bookworm) | webkit2gtk 2.22.3-1 (bookworm) |
Detection & IOCsextracted from sources · hover to see the quote
- →The vulnerability is triggered via maliciously crafted web content processed by WebKit's JSC (JavaScriptCore). Look for exploitation attempts involving CoW (Copy-on-Write) array manipulation in JavaScript — specifically writing to index 0 of an array that should be immutable (JSImmutableButterfly), which can bypass write barriers and lead to Use-After-Free. ↗
- →The root cause is in WebKit's AbstractValue::set using structure->indexingType() instead of structure->indexingMode(), masking the CopyOnWrite flag. Detection engineering should flag WebKit/JSC builds prior to the patched versions (Safari 12.0.2, iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9) as vulnerable. ↗
- →Processing maliciously crafted web content is the attack vector. Monitor for WebKit-based browser processes (Safari, WebView in iTunes/iCloud on Windows) spawning unexpected child processes or exhibiting memory corruption crash signatures (e.g., SIGSEGV/access violations in JavaScriptCore). ↗
- ·The PoC requires --useConcurrentJIT=false to be passed to JSC to reproduce reliably; real-world exploitation may require different JIT configuration or timing conditions. ↗
- ·The exploit uses a sleep/busy-wait loop and a setTimeout delay, suggesting timing-dependent exploitation; detection based purely on static JS patterns may miss obfuscated variants. ↗
CVSS provenance
nvdv3.08.8HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.8HIGH
vulncheck8.8HIGH
vendor_debian8.8LOW
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2018-4443: watchOS 5.1.2
vendor_apple·2018-12-06·CVSS 8.8
CVE-2018-4443 [HIGH] CVE-2018-4443: watchOS 5.1.2
Apple Security Update: About the security content of watchOS 5.1.2
Product: watchOS
Version: 5.1.2
CVE: CVE-2018-4443
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved memory handling.
Apple
CVE-2018-4443: Safari 12.0.2
vendor_apple·2018-12-05·CVSS 8.8
CVE-2018-4443 [HIGH] CVE-2018-4443: Safari 12.0.2
Apple Security Update: About the security content of Safari 12.0.2
Product: Safari
Version: 12.0.2
CVE: CVE-2018-4443
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved memory handling.
Apple
CVE-2018-4443: iTunes 12.9.2 for Windows
vendor_apple·2018-12-05·CVSS 8.8
CVE-2018-4443 [HIGH] CVE-2018-4443: iTunes 12.9.2 for Windows
Apple Security Update: About the security content of iTunes 12.9.2 for Windows
Product: iTunes 12.9.2 for Windows
CVE: CVE-2018-4443
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved memory handling.
Apple
CVE-2018-4443: iOS 12.1.1
vendor_apple·2018-12-05·CVSS 8.8
CVE-2018-4443 [HIGH] CVE-2018-4443: iOS 12.1.1
Apple Security Update: About the security content of iOS 12.1.1
Product: iOS
Version: 12.1.1
CVE: CVE-2018-4443
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved memory handling.
Apple
CVE-2018-4443: tvOS 12.1.1
vendor_apple·2018-12-05·CVSS 8.8
CVE-2018-4443 [HIGH] CVE-2018-4443: tvOS 12.1.1
Apple Security Update: About the security content of tvOS 12.1.1
Product: tvOS
Version: 12.1.1
CVE: CVE-2018-4443
Component: WebKit
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved memory handling.
Apple
CVE-2018-4443: iCloud for Windows 7.9
vendor_apple·2018-12-05·CVSS 8.8
CVE-2018-4443 [HIGH] CVE-2018-4443: iCloud for Windows 7.9
Apple Security Update: About the security content of iCloud for Windows 7.9
Product: iCloud for Windows
Version: 7.9
CVE: CVE-2018-4443
Component: WebK it
Impact: Processing maliciously crafted web content may lead to arbitrary code execution
Description: A memory corruption issue was addressed with improved memory handling.
Debian
CVE-2018-4443: webkit2gtk - A memory corruption issue was addressed with improved memory handling. This issu...
vendor_debian·2018·CVSS 8.8
CVE-2018-4443 [HIGH] CVE-2018-4443: webkit2gtk - A memory corruption issue was addressed with improved memory handling. This issu...
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9.
Scope: local
bookworm: resolved (fixed in 2.22.3-1)
bullseye: resolved (fixed in 2.22.3-1)
forky: resolved (fixed in 2.22.3-1)
sid: resolved (fixed in 2.22.3-1)
trixie: resolved (fixed in 2.22.3-1)
GHSA
GHSA-vg9g-4m82-74rc: A memory corruption issue was addressed with improved memory handling
ghsa_unreviewed·2022-05-14
CVE-2018-4443 [HIGH] CWE-119 GHSA-vg9g-4m82-74rc: A memory corruption issue was addressed with improved memory handling
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9.
OSV
CVE-2018-4443: A memory corruption issue was addressed with improved memory handling
osv·2019-04-03·CVSS 8.8
CVE-2018-4443 [HIGH] CVE-2018-4443: A memory corruption issue was addressed with improved memory handling
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9.
VulnCheck
Apple safari Improper Restriction of Operations within the Bounds of a Memory Buffer
vulncheck·2018·CVSS 8.8
CVE-2018-4443 [HIGH] Apple safari Improper Restriction of Operations within the Bounds of a Memory Buffer
Apple safari Improper Restriction of Operations within the Bounds of a Memory Buffer
A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9.
Affected: Apple safari
Required Action: Apply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.
Exploitation References: https://www.fortinet.com/content/dam/fortinet/assets/threat-reports/threat-landscape-report-2h-2023.pdf
No detection rules found.
No writeups or analysis indexed.
https://support.apple.com/kb/HT209340https://support.apple.com/kb/HT209342https://support.apple.com/kb/HT209343https://support.apple.com/kb/HT209344https://support.apple.com/kb/HT209345https://support.apple.com/kb/HT209346https://support.apple.com/kb/HT209340https://support.apple.com/kb/HT209342https://support.apple.com/kb/HT209343https://support.apple.com/kb/HT209344https://support.apple.com/kb/HT209345https://support.apple.com/kb/HT209346
2019-04-03
Published
Exploited in the wild