An issue was discovered in certain Apple products. iOS before 11.3.1 is affected. macOS before 10.13.4 Security Update 2018-001 is affected. tvOS before 11.4 is affected. watchOS before 4.3.1 is affected. The issue involves the "Crash Reporter" component. It allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted app that replaces a privileged port name.
2018-06-08T18:29:01.087
2024-11-21T04:06:58.173
Modified
CVSSv3.0: 7.8 (HIGH)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | apple | apple_tv | < 11.4 | Yes |
Operating System | apple | iphone_os | < 11.3.1 | Yes |
Operating System | apple | mac_os_x | < 10.13.4 | Yes |
Operating System | apple | watchos | < 4.3.1 | Yes |