First published: Wed Sep 12 2018(Updated: )
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5, iTunes 12.9 for Windows, iCloud for Windows 7.7.
Credit: The UK's National Cyber Security Centre (NCSC) The UK's National Cyber Security Centre (NCSC) The UK's National Cyber Security Centre (NCSC) The UK's National Cyber Security Centre (NCSC) The UK's National Cyber Security Centre (NCSC) The UK's National Cyber Security Centre (NCSC) product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iCloud for Windows | <7.7 | 7.7 |
Apple iTunes for Windows | <12.9 | 12.9 |
Apple watchOS | <5 | 5 |
Apple macOS Mojave | <10.14 | 10.14 |
Apple tvOS | <12 | 12 |
Apple iOS | <12 | 12 |
Apple iPhone OS | <12.0 | |
Apple Mac OS X | <10.14 | |
Apple tvOS | <12 | |
Apple watchOS | <5.0 | |
Apple iCloud | <7.7 | |
Apple iTunes | <12.9 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
CVE-2018-4414 is a memory corruption issue in CoreFoundation that was addressed with improved input validation.
Versions of iOS prior to 12, macOS Mojave prior to 10.14, tvOS prior to 12, watchOS prior to 5, iTunes for Windows prior to 12.9, and iCloud for Windows prior to 7.7 are affected.
CVE-2018-4414 has a severity rating of 7.8, which is considered high.
To fix CVE-2018-4414, update to the latest version of iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5, iTunes 12.9 for Windows, or iCloud for Windows 7.7.
You can find more information about CVE-2018-4414 on the Apple support page: [https://support.apple.com/kb/HT209106](https://support.apple.com/kb/HT209106)