CVE-2018-4264: Buffer Overflow
Last updated 24 July 2024
Other sources
Multiple memory corruption issues were addressed with improved memory handling. This issue affected versions prior to iOS 11.4.1, tvOS 11.4.1, watchOS 4.3.2, Safari 11.1.2, iTunes 12.8 for Windows, iCloud for Windows 7.6.
— Launchpad
WebKit. Multiple memory corruption issues were addressed with improved memory handling.
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2018-4293
- CVE-2018-4269
- CVE-2018-4282
- CVE-2018-4280
- CVE-2018-4248
- CVE-2018-4277
- CVE-2018-4270
- CVE-2018-4278
- CVE-2018-4284
- CVE-2018-4266
- CVE-2018-4261
- CVE-2018-4262
- CVE-2018-4263
- CVE-2018-4264
- CVE-2018-4265
- CVE-2018-4267
- CVE-2018-4272
- CVE-2018-4271
- CVE-2018-4273
- CVE-2018-4290
- CVE-2018-4145
- CVE-2018-4279
- CVE-2018-4362
- CVE-2018-4274
- CVE-2018-4260
- CVE-2018-4327
- CVE-2018-4216
- CVE-2018-4275
Frequently Asked Questions
What is CVE-2018-4264?
CVE-2018-4264 is a vulnerability in WebKit that allows memory corruption.
Which versions of iOS, tvOS, watchOS, Safari, iTunes, and iCloud are affected by CVE-2018-4264?
Versions prior to iOS 11.4.1, tvOS 11.4.1, watchOS 4.3.2, Safari 11.1.2, iTunes 12.8 for Windows, and iCloud for Windows 7.6 are affected by CVE-2018-4264.
What is the severity of CVE-2018-4264?
CVE-2018-4264 has a severity value of 8.8, which is considered high.
How do I fix CVE-2018-4264 on Ubuntu?
To fix CVE-2018-4264 on Ubuntu, update the webkit2gtk package to version 2.20.5-0ubuntu0.18.04.1.
How do I fix CVE-2018-4264 on Apple devices?
To fix CVE-2018-4264 on Apple devices, update to iOS 11.4.1, tvOS 11.4.1, watchOS 4.3.2, Safari 11.1.2, iTunes 12.8 for Windows, and iCloud for Windows 7.6.