CVE-2018-4087: Buffer Overflow
An issue was discovered in certain Apple products. iOS before 11.2.5 is affected. tvOS before 11.2.5 is affected. watchOS before 4.2.2 is affected. The issue involves the "Core Bluetooth" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-4087?
The severity of CVE-2018-4087 is critical with a severity value of 7.8.
Which Apple products are affected by CVE-2018-4087?
iOS before 11.2.5, tvOS before 11.2.5, and watchOS before 4.2.2 are affected by CVE-2018-4087.
What is the component involved in CVE-2018-4087?
The component involved in CVE-2018-4087 is "Core Bluetooth".
What can attackers do with CVE-2018-4087?
Attackers can execute arbitrary code in a privileged context or cause a denial of service.
Are there any references for CVE-2018-4087?
Yes, you can find more information about CVE-2018-4087 at the following links: [1] http://www.securityfocus.com/bid/102774 [2] http://www.securitytracker.com/id/1040265 [3] https://blog.zimperium.com/cve-2018-4087-poc-escaping-sandbox-misleading-bluetoothd/