CVE-2018-4357: Input Validation
Published Sep 17, 2018
·Updated
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to Xcode 10.
Other sources
LLVM. A memory corruption issue was addressed with improved input validation.
Credit
found by OSS-Fuzz
Affected Software
2 affected componentsFixes available
Apple Xcode<10
10
Apple Xcode<10
Event History
Apr 3, 2019
CVE Published
via MITRE·05:43 PM
Data Sourced
via MITRE·05:43 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-4357?
CVE-2018-4357 is rated as high severity due to the potential for memory corruption.
2
How do I fix CVE-2018-4357?
To fix CVE-2018-4357, upgrade to Xcode version 10 or later.
3
What versions of Xcode are affected by CVE-2018-4357?
CVE-2018-4357 affects all versions of Xcode prior to version 10.
4
What type of vulnerability is CVE-2018-4357?
CVE-2018-4357 is a memory corruption vulnerability resulting from inadequate input validation.
5
Who is the vendor associated with CVE-2018-4357?
The vendor associated with CVE-2018-4357 is Apple.