VDB

CISA-2018-4233

CISA-2018-4233 PUBLISHED CVSS 8.8 HIGH

Reported by apple · Published June 8, 2018

An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is affected. iTunes before 12.7.5 on Windows is affected. tvOS before 11.4 is affected. watchOS before 4.3.1 is affected. The issue involves the "WebKit" component. It allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site.

Risk Scores

CVSS 3.1
8.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
n/an/an/a
appletvos0, 0
appleiphone_os0, 0
applewatchos0, 0
appleitunes0, 0
applesafari0, 0
n/an/an/a, n/a
canonicalubuntu_linux16.04, 18.04, 17.10
appleicloud0, 0

Timeline

  • Jun 8, 2018 CVE Published
  • Aug 5, 2024 CVE Updated
  • Apr 26, 2026 Security Advisory

References

  • x_refsource_CONFIRM
  • x_refsource_CONFIRM
  • x_refsource_CONFIRM
  • GLSA-201808-04 vendor-advisoryx_refsource_GENTOO
  • x_refsource_CONFIRM
  • 1041029 vdb-entryx_refsource_SECTRACK
  • USN-3687-1 vendor-advisoryx_refsource_UBUNTU
  • x_refsource_CONFIRM
  • 45998 exploitx_refsource_EXPLOIT-DB
  • x_refsource_CONFIRM
  • x_refsource_MISC
Open in Interactive Console →
$ Console Community · 100/wk Open console ›