First published: Wed Sep 12 2018(Updated: )
WebKit. Multiple memory corruption issues were addressed with improved memory handling.
Credit: Samuel Groβ (saelo) Trend MicroIvan Fratric Google Project ZeroIvan Fratric Google Project Zeroteam (@bkth_ @5aelo @_niklasb) @phoenhex Trend MicroSamuel Groß @5aelo William Bowling @wcbowling Samuel Groβ (saelo) Trend Micro's Zero Day InitiativeIvan Fratric Google Project ZeroIvan Fratric Google Project Zeroteam (@bkth_ @5aelo @_niklasb) @phoenhex Trend Micro's Zero Day InitiativeSamuel Groß @5aelo William Bowling @wcbowling Samuel Groβ (saelo) Trend MicroIvan Fratric Google Project ZeroIvan Fratric Google Project Zeroteam (@bkth_ @5aelo @_niklasb) @phoenhex Trend MicroSamuel Groß @5aelo William Bowling @wcbowling Samuel Groβ (saelo) Trend MicroIvan Fratric Google Project ZeroIvan Fratric Google Project Zeroteam (@bkth_ @5aelo @_niklasb) @phoenhex Trend MicroSamuel Groß @5aelo William Bowling @wcbowling Samuel Groβ (saelo) Trend MicroIvan Fratric Google Project ZeroIvan Fratric Google Project Zeroteam (@bkth_ @5aelo @_niklasb) @phoenhex Trend MicroSamuel Groß @5aelo William Bowling @wcbowling product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iTunes for Windows | <12.9 | 12.9 |
Apple iCloud for Windows | <7.7 | 7.7 |
Apple Safari | <12 | 12 |
Apple tvOS | <12 | 12 |
Apple iOS | <12 | 12 |
Apple Safari | <12 | |
Apple iPhone OS | <12.0 | |
Apple tvOS | <12 | |
Apple iCloud | <7.7 | |
Apple iTunes | <12.9 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2018-4360 is a vulnerability in WebKit that allows for multiple memory corruption issues with improved memory handling.
Versions prior to iOS 12 and tvOS 12 are affected by CVE-2018-4360.
Versions prior to Safari 12, iTunes 12.9, and iCloud for Windows 7.7 are affected by CVE-2018-4360.
CVE-2018-4360 has a severity rating of 8.8 (high).
To fix CVE-2018-4360, update to iOS 12, tvOS 12, Safari 12, iTunes 12.9 for Windows, or iCloud for Windows 7.7.