Vulnerabilities > Apple > Iphone OS > 11.3

DATE CVE VULNERABILITY TITLE RISK
2019-01-11 CVE-2018-4330 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Apple Iphone OS
In iOS before 11.4, a memory corruption issue exists and was addressed with improved memory handling.
network
apple CWE-119
critical
9.3
2019-01-11 CVE-2018-4278 In Safari before 11.1.2, iTunes before 12.8 for Windows, iOS before 11.4.1, tvOS before 11.4.1, iCloud for Windows before 7.6, sound fetched through audio elements may be exfiltrated cross-origin.
network
low complexity
apple canonical
4.3
2019-01-11 CVE-2018-4277 Improper Input Validation vulnerability in Apple products
In iOS before 11.4.1, watchOS before 4.3.2, tvOS before 11.4.1, Safari before 11.1.1, macOS High Sierra before 10.13.6, a spoofing issue existed in the handling of URLs.
network
low complexity
apple CWE-20
5.0
2019-01-11 CVE-2018-4262 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
In Safari before 11.1.2, iTunes before 12.8 for Windows, iOS before 11.4.1, tvOS before 11.4.1, iCloud for Windows before 7.6, multiple memory corruption issues were addressed with improved memory handling.
network
low complexity
apple canonical CWE-119
8.8
2019-01-11 CVE-2018-4194 Out-of-bounds Read vulnerability in Apple products
In iOS before 11.4, iCloud for Windows before 7.5, watchOS before 4.3.1, iTunes before 12.7.5 for Windows, and macOS High Sierra before 10.13.5, an out-of-bounds read was addressed with improved input validation.
6.8
2018-08-07 CVE-2018-5383 Improper Verification of Cryptographic Signature vulnerability in multiple products
Bluetooth firmware or operating system software drivers in macOS versions before 10.13, High Sierra and iOS versions before 11.4, and Android versions before the 2018-06-05 patch may not sufficiently validate elliptic curve parameters used to generate public keys during a Diffie-Hellman key exchange, which may allow a remote attacker to obtain the encryption key used by the device.
4.3
2018-06-08 CVE-2018-4252 Information Exposure vulnerability in Apple Iphone OS
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-200
2.1
2018-06-08 CVE-2018-4250 Improper Input Validation vulnerability in Apple Iphone OS
An issue was discovered in certain Apple products.
network
apple CWE-20
4.3
2018-06-08 CVE-2018-4249 Integer Overflow or Wraparound vulnerability in Apple products
An issue was discovered in certain Apple products.
local
low complexity
apple CWE-190
7.8
2018-06-08 CVE-2018-4247 Improper Input Validation vulnerability in Apple Iphone OS and Safari
An issue was discovered in certain Apple products.
network
apple CWE-20
4.3