First published: Thu Mar 29 2018(Updated: )
Security. A buffer overflow was addressed with improved size validation.
Credit: Abraham Masri @cheesecakeufo Abraham Masri @cheesecakeufo Abraham Masri @cheesecakeufo Abraham Masri @cheesecakeufo Abraham Masri @cheesecakeufo product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iCloud for Windows | <7.4 | 7.4 |
Apple watchOS | <4.3 | 4.3 |
Apple macOS High Sierra | <10.13.4 | 10.13.4 |
Apple Sierra | ||
Apple El Capitan | ||
Apple tvOS | <11.3 | 11.3 |
Apple iOS | <11.3 | 11.3 |
Apple iPhone OS | <11.3 | |
Apple Mac OS X | <10.13.4 | |
Apple tvOS | <11.3 | |
Apple watchOS | <4.3 | |
Apple iCloud | <7.4 | |
Microsoft Windows | ||
Apple iTunes | <12.7.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2018-4144 is a buffer overflow vulnerability that affects certain Apple products.
iOS before 11.3, macOS before 10.13.4, iCloud before 7.4 on Windows, iTunes before 12.7.4 on Windows, tvOS before 11.3, and watchOS before 4.3 are affected by CVE-2018-4144.
CVE-2018-4144 has a severity rating of 7.8 (critical).
To fix CVE-2018-4144, update your affected Apple products to the latest versions available.
You can find more information about CVE-2018-4144 at the following references: [Reference 1](http://www.securityfocus.com/bid/103582), [Reference 2](http://www.securitytracker.com/id/1040604), [Reference 3](http://www.securitytracker.com/id/1040608).