VDB
CVE-2018-4382
CVE-2018-4382
PUBLISHED
Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iOS 12.1, tvOS 12.1, watchOS 5.1, Safari 12.0.1, iTunes 12.9.1, iCloud for Windows 7.8.
EPSS 18.67% · 95.4th percentile
Risk Scores
EPSS Score
18.67%
95.4th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:22.04:LTS | qtwebkit-opensource-src | *, 0, 5.212.0~alpha4-12 |
| Ubuntu:18.04:LTS | webkitgtk | 2.4.11-3ubuntu2, 2.4.11-3ubuntu3, 0 |
| Ubuntu:18.04:LTS | qtwebkit-opensource-src | 0, 5.212.0~alpha2-7ubuntu1, 5.212.0~alpha2-7build2 |
| Ubuntu:16.04:LTS | webkitgtk | 2.4.11-0ubuntu0.1, 0, 2.4.9-2ubuntu2 |
| Ubuntu:20.04:LTS | qtwebkit-opensource-src | 5.212.0~alpha4-1ubuntu2.1, 5.212.0~alpha4-1ubuntu2, 5.212.0~alpha4-1 |
| Ubuntu:16.04:LTS | webkit2gtk | 2.16.6-0ubuntu0.16.04.1, 0, 2.8.5+dfsg1-3 |
| Ubuntu:16.04:LTS | qtwebkit-opensource-src | 0, 5.4.2+dfsg-1ubuntu2.1, 5.5.1+dfsg-2ubuntu1 |
| Ubuntu:18.04:LTS | qtwebkit-source | 0, 2.3.2-0ubuntu13 |
| Ubuntu:16.04:LTS | qtwebkit-source | 2.3.2-0ubuntu11, 2.3.2-0ubuntu10, 0 |
| Ubuntu:24.04:LTS | qtwebkit-opensource-src | 5.212.0~alpha4-33build1, 5.212.0~alpha4-33, 5.212.0~alpha4-34 |
Exploit Intelligence
Timeline
- Oct 31, 2018 CVE Published
- Nov 29, 2018 PoC Published
- Apr 14, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- May 2, 2022 EPSS Score
- Jul 3, 2022 EPSS Score
- Nov 6, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- May 13, 2023 EPSS Score
- Jul 15, 2023 EPSS Score
References
- https://ubuntu.com/security/CVE-2018-4382 third-party-advisory
- https://webkitgtk.org/security/WSA-2018-0008.html third-party-advisory
- https://www.cve.org/CVERecord?id=CVE-2018-4382 third-party-advisory