Array Indexing Issue in Safari, iTunes, and Other Apple Products
CVE-2018-4210

8.8HIGH

Key Information:

Vendor

Apple

Status
Vendor
CVE Published:
11 January 2019

What is CVE-2018-4210?

A vulnerability exists in multiple Apple products due to an array indexing issue in the JavaScript core's function handling. This flaw may enable attackers to exploit memory corruption, leading to potential unauthorized access or execution of arbitrary code. The issue has been addressed in software updates that improve checks within the affected products.

References

CVSS V3.1

Score:
8.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2018-4210 : Array Indexing Issue in Safari, iTunes, and Other Apple Products