cbcvebase.
CVE-2018-4474
published 2020-10-27

CVE-2018-4474: A memory consumption issue was addressed with improved memory handling. This issue is fixed in iCloud for Windows 7.7, watchOS 5, Safari 12, iOS 12, iTunes…

PriorityP338high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
1.69%
74.4th percentile
A memory consumption issue was addressed with improved memory handling. This issue is fixed in iCloud for Windows 7.7, watchOS 5, Safari 12, iOS 12, iTunes 12.9 for Windows, tvOS 12. Unexpected interaction causes an ASSERT failure.

Affected

18 ranges
VendorProductVersion rangeFixed in
appleicloud< 7.77.7
appleicloud_for_windows
appleicloud_for_windows>= unspecified < 7.77.7
appleios
appleios>= unspecified < 1212
appleiphone_os< 12.012.0
appleitunes< 12.912.9
appleitunes_12.9_for_windows
appleitunes_for_windows>= unspecified < 12.912.9
applesafari< 1212
applesafari
applesafari>= unspecified < 1212
appletvos< 1212
appletvos
appletvos>= unspecified < 1212
applewatchos< 5.05.0
applewatchos>= unspecified < 55
applewatchos_5

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.