First published: Fri Jun 01 2018(Updated: )
libxpc. A logic issue was addressed with improved validation.
Credit: Samuel Groß @5aelo Trend Micro product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <11.4 | |
Apple Mac OS X | <10.13.5 | |
Apple tvOS | <11.4 | |
Apple watchOS | <4.3.1 | |
Apple macOS | <10.13.5 | 10.13.5 |
Apple Sierra | ||
Apple El Capitan |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID of this issue is CVE-2018-4237.
iOS before 11.4, macOS before 10.13.5, tvOS before 11.4, and watchOS before 4.3.1 are affected by this vulnerability.
The severity rating of CVE-2018-4237 is 7.8 (high).
An attacker can gain privileges by leveraging a crafted app that exploits the logic issue in the libxpc component.
Yes, you can find official documentation about this vulnerability on the Apple support website. Please refer to the provided links for more information.