CVE-2018-4386
HIGH EXPLOITEDApple Safari < 12.0.1 - Memory Corruption
Title source: ruleDescription
Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iOS 12.1, tvOS 12.1, watchOS 5.1, Safari 12.0.1, iTunes 12.9.1, iCloud for Windows 7.8.
Exploits (3)
exploitdb
WORKING POC
VERIFIED
by Google Security Research · javascriptdosmultiple
https://www.exploit-db.com/exploits/45912
exploitdb
WORKING POC
by TJ Corley · javascriptwebappshardware
https://www.exploit-db.com/exploits/47893
References (7)
Scores
CVSS v3
8.8
EPSS
0.2671
EPSS Percentile
96.4%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Details
VulnCheck KEV
2024-05-06
CWE
CWE-119
Status
published
Products (6)
apple/icloud
< 7.8
apple/iphone_os
< 12.1
apple/itunes
< 12.9.1
apple/safari
< 12.0.1
apple/tvos
< 12.1
apple/watchos
< 5.1
Published
Apr 03, 2019
Tracked Since
Feb 18, 2026