First published: Tue Apr 03 2018(Updated: )
An issue was discovered in certain Apple products. iOS before 11.2.5 is affected. macOS before 10.13.3 is affected. tvOS before 11.2.5 is affected. watchOS before 4.2.2 is affected. The issue involves the "Kernel" component. It allows attackers to bypass intended memory-read restrictions via a crafted app.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Apple Tv | <11.2.5 | |
Apple iPhone OS | <11.2.5 | |
Apple Mac OS X | <10.13.3 | |
Apple watchOS | <4.2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2018-4093.
Certain Apple products including iOS, macOS, tvOS, and watchOS are affected by this vulnerability.
CVE-2018-4093 has a severity level of medium (5.5).
Attackers can exploit CVE-2018-4093 to bypass intended memory-read restrictions.
Yes, Apple released updates for the affected products. It is recommended to update to the latest versions of iOS, macOS, tvOS, and watchOS to fix this vulnerability.