6.8
CVSSv2

CVE-2018-4442

Published: 03/04/2019 Updated: 05/04/2019
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

A memory corruption issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2, Safari 12.0.2, iTunes 12.9.2 for Windows, iCloud for Windows 7.9.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple iphone os

apple tvos

apple watchos

apple safari

apple itunes

apple icloud

Exploits

/* The doesGC function simply takes a node, and tells if it might cause a garbage collection This function is used to determine whether to insert write barriers But it's missing GetIndexedPropertyStorage that can cause a garbage collection via rope strings As a result, it can lead to UaF PoC: */ function gc() { for (let i = 0; i < 10; ...
The doesGC function simply takes a node, and tells if it might cause a garbage collection This function is used to determine whether to insert write barriers But it is missing some cases such as StringCharAt, StringCharCodeAt and GetByVal that might cause a garbage collection via rope strings As a result, it can lead to a use-after-free conditio ...

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> APPLE-SA-2018-12-05-1 iOS 1211 <!--X-Subject-Header-End--> <!--X-Head-of-Message--> From: Apple Product Security v ...
<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> APPLE-SA-2018-12-06-1 watchOS 512 <!--X-Subject-Header-End--> <!--X-Head-of-Message--> From: Apple Product Securit ...
<!--X-Body-Begin--> <!--X-User-Header--> Full Disclosure mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> APPLE-SA-2018-12-05-6 iCloud for Windows 79 <!--X-Subject-Header-End--> <!--X-Head-of-Message--> From: Apple Produc ...