CVE-2018-4134: Input Validation
Published Mar 29, 2018
·Updated
Safari. An inconsistent user interface issue was addressed with improved state management.
Other sources
An issue was discovered in certain Apple products. iOS before 11.3 is affected. The issue involves the "Safari" component. It allows remote attackers to spoof the user interface via a crafted web site.
Credit
xisigr(Tencent), Zhiyang Zeng@@Wester(Tencent Security Platform Department)
Affected Software
2 affected componentsFixes available
Apple iOS and iPadOS<11.3
11.3
iPhone OS<11.3
Event History
Apr 3, 2018
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2018-4177
- CVE-2018-4123
- CVE-2018-4155
- CVE-2018-4158
- CVE-2018-4142
- CVE-2018-4390
- CVE-2018-4391
- CVE-2018-4167
- CVE-2018-4168
- CVE-2018-4172
- CVE-2018-4151
- CVE-2018-4150
- CVE-2018-4104
- CVE-2018-4143
- CVE-2018-4185
- CVE-2017-15412
- CVE-2018-4187
- CVE-2018-4174
- CVE-2018-4166
- CVE-2018-4156
- CVE-2018-4157
- CVE-2018-4134
- CVE-2018-4137
- CVE-2018-4149
- CVE-2018-4144
- CVE-2018-4173
- CVE-2018-4154
- CVE-2018-4115
- CVE-2018-4140
- CVE-2018-4148
- CVE-2018-4110
- CVE-2018-4101
- CVE-2018-4114
- CVE-2018-4118
- CVE-2018-4119
- CVE-2018-4120
- CVE-2018-4121
- CVE-2018-4122
- CVE-2018-4125
- CVE-2018-4127
- CVE-2018-4128
- CVE-2018-4129
- CVE-2018-4130
- CVE-2018-4161
- CVE-2018-4162
- CVE-2018-4163
- CVE-2018-4165
- CVE-2018-4113
- CVE-2018-4146
- CVE-2018-4117
- CVE-2018-4207
- CVE-2018-4208
- CVE-2018-4209
- CVE-2018-4210
- CVE-2018-4212
- CVE-2018-4213
- CVE-2018-4145
- CVE-2018-4131
Frequently Asked Questions
1
What is CVE-2018-4134?
CVE-2018-4134 is a vulnerability in Safari that allows remote attackers to spoof the user interface via a crafted web site.
2
What products are affected by CVE-2018-4134?
iOS before version 11.3 is affected by CVE-2018-4134.
3
What is the severity of CVE-2018-4134?
CVE-2018-4134 has a severity of 8.8 (high).
4
How can I fix CVE-2018-4134?
To fix CVE-2018-4134, update your iOS to version 11.3 or higher.
5
Where can I find more information about CVE-2018-4134?
You can find more information about CVE-2018-4134 at the following references: [link1], [link2], [link3].