CVE-2018-4219: Incorrect Type Cast
Published Jun 1, 2018
·Updated
ATS. A type confusion issue was addressed with improved memory handling.
Other sources
An issue was discovered in certain Apple products. macOS before 10.13.5 is affected. The issue involves the "ATS" component. It allows attackers to gain privileges via a crafted app that leverages type confusion.
Credit
Mohamed Ghannam@@_simo36
Affected Software
4 affected componentsFixes available
Apple macOS High Sierra<10.13.5
10.13.5
Apple Sierra
Apple El Capitan
Apple iOS and macOS<10.13.5
Event History
Jun 8, 2018
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2018-4196
- CVE-2018-4253
- CVE-2018-4256
- CVE-2018-4255
- CVE-2018-4254
- CVE-2018-4258
- CVE-2018-4257
- CVE-2018-7584
- CVE-2018-4219
- CVE-2018-5383
- CVE-2018-4171
- CVE-2018-4194
- CVE-2018-4180
- CVE-2018-4181
- CVE-2018-4182
- CVE-2018-4183
- CVE-2018-4478
- CVE-2018-4251
- CVE-2018-4211
- CVE-2018-4229
- CVE-2018-4159
- CVE-2018-4242
- CVE-2018-4202
- CVE-2018-4217
- CVE-2018-4141
- CVE-2018-4228
- CVE-2018-4236
- CVE-2018-4234
- CVE-2018-4249
- CVE-2018-8897
- CVE-2018-4241
- CVE-2018-4243
- CVE-2018-4237
- CVE-2018-4404
- CVE-2018-4227
- CVE-2018-4235
- CVE-2018-4240
- CVE-2018-4230
- CVE-2018-4221
- CVE-2018-4223
- CVE-2018-4224
- CVE-2018-4225
- CVE-2018-4226
- CVE-2018-4184
- CVE-2018-4198
- CVE-2018-4193
Frequently Asked Questions
1
What is CVE-2018-4219?
CVE-2018-4219 is a type confusion vulnerability in the ATS component of certain Apple products, allowing attackers to gain privileges via a crafted app.
2
How does CVE-2018-4219 affect macOS?
CVE-2018-4219 affects macOS versions before 10.13.5.
3
What is the severity of CVE-2018-4219?
CVE-2018-4219 has a severity rating of 7.8 (High).
4
How can I fix CVE-2018-4219?
To fix CVE-2018-4219, update to macOS version 10.13.5 or later.
5
Where can I find more information about CVE-2018-4219?
You can find more information about CVE-2018-4219 at the following references: [link1], [link2].