CVE-2018-4189

CRITICAL

Apple tvOS < 11.2.5 - Memory Corruption

Title source: llm
STIX 2.1

Description

In iOS before 11.2.5, macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, watchOS before 4.2.2, and tvOS before 11.2.5, a memory corruption issue exists and was addressed with improved memory handling.

References (4)

Core 4
Core References
Vendor Advisory x_refsource_confirm
https://support.apple.com/HT208462
Vendor Advisory x_refsource_misc
https://support.apple.com/HT208463
Vendor Advisory x_refsource_misc
https://support.apple.com/HT208464
Vendor Advisory x_refsource_misc
https://support.apple.com/HT208465

Scores

CVSS v3 9.8
EPSS 0.0166
EPSS Percentile 73.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-119
Status published
Products (4)
apple/apple_tv < 11.2.5
apple/iphone_os < 11.2.5
apple/mac_os_x 10.13.0 - 10.13.3
apple/watchos < 4.2.2
Published Jan 11, 2019
Tracked Since Feb 18, 2026