6.8
CVSSv2

CVE-2018-4200

Published: 08/06/2018 Updated: 07/03/2019
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

An issue exists in certain Apple products. iOS prior to 11.3.1 is affected. Safari prior to 11.1 is affected. iCloud prior to 7.5 on Windows is affected. iTunes prior to 12.7.5 on Windows is affected. tvOS prior to 11.4 is affected. The issue involves the "WebKit" component. It allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site that triggers a WebCore::jsElementScrollHeightGetter use-after-free.

Vulnerable Product Search on Vulmon Subscribe to Product

apple safari

apple iphone os

apple tvos

apple icloud

apple itunes

canonical ubuntu linux 18.04

canonical ubuntu linux 16.04

canonical ubuntu linux 17.10

Vendor Advisories

A security issue was fixed in WebKitGTK+ ...
An issue was discovered in certain Apple products iOS before 1131 is affected Safari before 111 is affected iCloud before 75 on Windows is affected iTunes before 1275 on Windows is affected tvOS before 114 is affected The issue involves the "WebKit" component It allows remote attackers to execute arbitrary code or cause a denial of se ...
A memory corruption issue has been found in webkitgtk < 2202, where processing maliciously crafted web content may lead to arbitrary code execution ...

Exploits

<!-- There is a use-after-free security vulnerability in WebKit The vulnerability was confirmed on ASan build of Revision 227958 on OSX PoC (Note: It might take multiple refreshes for the issue to be triggered): ================================================================= --> <style> input:enabled { content: url(#foo); paddin ...
There is a use-after-free security vulnerability in WebKit The vulnerability was confirmed on ASan build of revision 227958 on OSX ...

Recent Articles

Apple debugs debugger, nukes pesky vulns in iOS, WebKit, macOS
The Register • Shaun Nichols in San Francisco • 25 Apr 2018

Cook's Cupertino crew corrects coding cockups It's 2018 and your Macs, iPhones can be pwned by playing evil music

Apple has issued a trio of updates to patch security vulnerabilities in Safari, macOS, and iOS. For iOS, the update to 11.3.1 addresses a total of four CVE-listed vulnerabilities, including one that is present in the debugging tool used across both iOS and the macOS. That vulnerability, CVE-2018-4206, was spotted in Crash Reporter by researcher Ian Beer of Google's Project Zero. According to Apple, a vulnerability in Crash Reporter's error handling would have allowed an application to trigger a ...