8.8
CVSSv3

CVE-2018-4386

Published: 03/04/2019 Updated: 08/01/2020
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iOS 12.1, tvOS 12.1, watchOS 5.1, Safari 12.0.1, iTunes 12.9.1, iCloud for Windows 7.8.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple safari

apple tvos

apple iphone os

apple watchos

apple itunes

apple icloud

Vendor Advisories

Several security issues were fixed in WebKitGTK+ ...

Exploits

WebKit JSC has an issue where BytecodeGenerator::hoistSloppyModeFunctionIfNecessary does not invalidate the ForInContext object ...
Sony Playstation 4 (PS4) versions prior to 672 webkit code execution proof of concept exploit ...

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> APPLE-SA-2018-10-30-4 watchOS 51 <!--X-Subject-Header-End--> <!--X-Head-of-Message--> From: Apple Product Security ...
<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> APPLE-SA-2018-10-30-3 Safari 1201 <!--X-Subject-Header-End--> <!--X-Head-of-Message--> From: Apple Product Securit ...

Github Repositories

bad_hoist Exploit implementation of CVE-2018-4386 Obtains addrof/fakeobj and arbitrary read/write primitives Supports PS4 consoles on 6XX May also work on older firmware versions, but I am not sure Bug was fixed in firmware 700