VDB
CVE-2018-4209
CVE-2018-4209
PUBLISHED
In iOS before 11.3, Safari before 11.1, iCloud for Windows before 7.4, tvOS before 11.3, watchOS before 4.3, iTunes before 12.7.4 for Windows, unexpected interaction causes an ASSERT failure. This issue was addressed with improved checks.
EPSS 0.66% · 71.4th percentile
Risk Scores
EPSS Score
0.66%
71.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:16.04:LTS | webkitgtk | 2.4.11-0ubuntu0.1, 2.4.10-0ubuntu1, 0 |
| Ubuntu:22.04:LTS | qtwebkit-opensource-src | 5.212.0~alpha4-15ubuntu1, 5.212.0~alpha4-14ubuntu2, 5.212.0~alpha4-14 |
| Ubuntu:16.04:LTS | qtwebkit-opensource-src | 0, 5.4.2+dfsg-1ubuntu2.1, 5.5.1+dfsg-2ubuntu1 |
| Ubuntu:20.04:LTS | qtwebkit-opensource-src | 5.212.0~alpha3-7, 5.212.0~alpha4-1ubuntu2, 5.212.0~alpha4-1ubuntu2.1 |
| Ubuntu:18.04:LTS | webkit2gtk | 2.20.5-0ubuntu0.18.04.1, 2.20.0-2ubuntu1, 0 |
| Ubuntu:18.04:LTS | webkitgtk | 2.4.11-3ubuntu2, 2.4.11-3, 2.4.11-3ubuntu3 |
| Ubuntu:18.04:LTS | qtwebkit-opensource-src | *, *, 5.212.0~alpha2-7ubuntu1 |
| Ubuntu:18.04:LTS | qtwebkit-source | 2.3.2-0ubuntu13, 0 |
| Ubuntu:24.04:LTS | qtwebkit-opensource-src | *, 0, 5.212.0~alpha4-36 |
| Ubuntu:16.04:LTS | webkit2gtk | 2.18.0-0ubuntu0.16.04.2, 2.18.3-0ubuntu0.16.04.1, 2.18.5-0ubuntu0.16.04.1 |
| Ubuntu:16.04:LTS | qtwebkit-source | 2.3.2-0ubuntu11, 0, 2.3.2-0ubuntu10 |
Timeline
- Sep 28, 2018 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 22, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 25, 2021 EPSS Score
- Dec 27, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 27, 2022 EPSS Score
- May 1, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Nov 5, 2022 EPSS Score
- Jan 7, 2023 EPSS Score
References
- https://ubuntu.com/security/CVE-2018-4209 third-party-advisory
- https://www.openwall.com/lists/oss-security/2018/09/29/1 third-party-advisory
- https://webkitgtk.org/security/WSA-2018-0007.html third-party-advisory
- https://ubuntu.com/security/notices/USN-3781-1 vendor-advisory
- https://www.cve.org/CVERecord?id=CVE-2018-4209 third-party-advisory