First published: Wed Dec 05 2018(Updated: )
Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9.
Credit: HyungSeok Han DongHyeon Oh Sang Kil Cha KAIST Softsec LabKorea HyungSeok Han DongHyeon Oh Sang Kil Cha KAIST Softsec LabKorea HyungSeok Han DongHyeon Oh Sang Kil Cha KAIST Softsec LabKorea HyungSeok Han DongHyeon Oh Sang Kil Cha KAIST Softsec LabKorea HyungSeok Han DongHyeon Oh Sang Kil Cha KAIST Softsec LabKorea HyungSeok Han DongHyeon Oh Sang Kil Cha KAIST Softsec LabKorea HyungSeok Han DongHyeon Oh Sang Kil Cha KAIST Softsec LabKorea HyungSeok Han DongHyeon Oh Sang Kil Cha KAIST Softsec LabKorea HyungSeok Han DongHyeon Oh Sang Kil Cha KAIST Softsec LabKorea HyungSeok Han DongHyeon Oh Sang Kil Cha KAIST Softsec LabKorea HyungSeok Han DongHyeon Oh Sang Kil Cha KAIST Softsec LabKorea HyungSeok Han DongHyeon Oh Sang Kil Cha KAIST Softsec LabKorea product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iCloud for Windows | <7.9 | 7.9 |
Apple iTunes for Windows | <12.9.2 | 12.9.2 |
Apple Safari | <12.0.2 | 12.0.2 |
Apple iOS | <12.1.1 | 12.1.1 |
watchOS | <5.1.2 | 5.1.2 |
Apple Safari | <12.0.2 | |
Apple iPhone OS | <12.1.1 | |
tvOS | <12.1.1 | |
watchOS | <5.1.2 | |
Apple iCloud | <7.9 | |
Apple iTunes | <12.9.2 | |
Microsoft Windows | ||
tvOS | <12.1.1 | 12.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
CVE-2018-4437 is a vulnerability in WebKit that allows memory corruption issues.
Versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, and iCloud for Windows 7.9 are affected by CVE-2018-4437.
CVE-2018-4437 has a severity of 8.8 (High).
To fix CVE-2018-4437, update your software to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, or iCloud for Windows 7.9.
You can find more information about CVE-2018-4437 at the following references: [link1], [link2], [link3].