CVE-2018-4251: High severity macos high sierra vulnerability
Firmware. A device configuration issue was addressed with an updated configuration.
Other sources
An issue was discovered in certain Apple products. macOS before 10.13.5 is affected. The issue involves the "Firmware" component. It allows attackers to modify the EFI flash-memory region that a crafted app that has root access.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2018-4196
- CVE-2018-4253
- CVE-2018-4256
- CVE-2018-4255
- CVE-2018-4254
- CVE-2018-4258
- CVE-2018-4257
- CVE-2018-7584
- CVE-2018-4219
- CVE-2018-5383
- CVE-2018-4171
- CVE-2018-4194
- CVE-2018-4180
- CVE-2018-4181
- CVE-2018-4182
- CVE-2018-4183
- CVE-2018-4478
- CVE-2018-4251
- CVE-2018-4211
- CVE-2018-4229
- CVE-2018-4159
- CVE-2018-4242
- CVE-2018-4202
- CVE-2018-4217
- CVE-2018-4141
- CVE-2018-4228
- CVE-2018-4236
- CVE-2018-4234
- CVE-2018-4249
- CVE-2018-8897
- CVE-2018-4241
- CVE-2018-4243
- CVE-2018-4237
- CVE-2018-4404
- CVE-2018-4227
- CVE-2018-4235
- CVE-2018-4240
- CVE-2018-4230
- CVE-2018-4221
- CVE-2018-4223
- CVE-2018-4224
- CVE-2018-4225
- CVE-2018-4226
- CVE-2018-4184
- CVE-2018-4198
- CVE-2018-4193
Frequently Asked Questions
What is CVE-2018-4251?
CVE-2018-4251 is a vulnerability in certain Apple products that allows attackers to modify the EFI flash-memory region with root access.
Which products are affected by CVE-2018-4251?
macOS before 10.13.5, Apple macOS High Sierra up to 10.13.5, Apple Sierra, and Apple El Capitan are affected by CVE-2018-4251.
How severe is CVE-2018-4251?
CVE-2018-4251 has a severity rating of 5.5 (high).
How do I fix CVE-2018-4251?
To fix CVE-2018-4251, update your macOS to version 10.13.5 or later.
Where can I find more information about CVE-2018-4251?
More information about CVE-2018-4251 can be found at the following references: [http://seclists.org/fulldisclosure/2019/Mar/45](http://seclists.org/fulldisclosure/2019/Mar/45), [http://www.securitytracker.com/id/1041027](http://www.securitytracker.com/id/1041027), [https://support.apple.com/HT208849](https://support.apple.com/HT208849).