CVE-2018-4209

In iOS before 11.3, Safari before 11.1, iCloud for Windows before 7.4, tvOS before 11.3, watchOS before 4.3, iTunes before 12.7.4 for Windows, unexpected interaction causes an ASSERT failure. This issue was addressed with improved checks.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apple:safari:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:tvos:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
OR cpe:2.3:a:apple:icloud:*:*:*:*:*:*:*:*
cpe:2.3:a:apple:itunes:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:*:*:*:*:*:*:*:*

Configuration 3 (hide)

cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*

Configuration 4 (hide)

cpe:2.3:a:webkit:webkitgtk\+:*:*:*:*:*:*:*:*

History

21 Nov 2024, 04:06

Type Values Removed Values Added
References () https://security.gentoo.org/glsa/201812-04 - Third Party Advisory () https://security.gentoo.org/glsa/201812-04 - Third Party Advisory
References () https://support.apple.com/HT208693%2C - () https://support.apple.com/HT208693%2C -
References () https://support.apple.com/HT208694 - Vendor Advisory () https://support.apple.com/HT208694 - Vendor Advisory
References () https://support.apple.com/HT208695%2C - () https://support.apple.com/HT208695%2C -
References () https://support.apple.com/HT208696%2C - () https://support.apple.com/HT208696%2C -
References () https://support.apple.com/HT208697%2C - () https://support.apple.com/HT208697%2C -
References () https://support.apple.com/HT208698%2C - () https://support.apple.com/HT208698%2C -
References () https://usn.ubuntu.com/3781-1/ - Third Party Advisory () https://usn.ubuntu.com/3781-1/ - Third Party Advisory

Information

Published : 2019-01-11 18:29

Updated : 2024-11-21 04:06


NVD link : CVE-2018-4209

Mitre link : CVE-2018-4209

CVE.ORG link : CVE-2018-4209


JSON object : View

Products Affected

webkit

  • webkitgtk\+

apple

  • iphone_os
  • safari
  • watchos
  • tvos
  • icloud
  • itunes

canonical

  • ubuntu_linux

microsoft

  • windows
CWE
CWE-20

Improper Input Validation