CVE-2018-4273: Input Validation
Last updated 24 July 2024
Other sources
Multiple memory corruption issues were addressed with improved input validation. This issue affected versions prior to iOS 11.4.1, tvOS 11.4.1, watchOS 4.3.2, Safari 11.1.2, iTunes 12.8 for Windows, iCloud for Windows 7.6.
— Launchpad
WebKit. Multiple memory corruption issues were addressed with improved input validation.
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2018-4293
- CVE-2018-4269
- CVE-2018-4282
- CVE-2018-4280
- CVE-2018-4248
- CVE-2018-4277
- CVE-2018-4270
- CVE-2018-4278
- CVE-2018-4284
- CVE-2018-4266
- CVE-2018-4261
- CVE-2018-4262
- CVE-2018-4263
- CVE-2018-4264
- CVE-2018-4265
- CVE-2018-4267
- CVE-2018-4272
- CVE-2018-4271
- CVE-2018-4273
- CVE-2018-4290
- CVE-2018-4145
- CVE-2018-4279
- CVE-2018-4362
- CVE-2018-4274
- CVE-2018-4260
- CVE-2018-4327
- CVE-2018-4216
- CVE-2018-4275
Frequently Asked Questions
What is CVE-2018-4273?
CVE-2018-4273 is a vulnerability in WebKit that allows for multiple memory corruption issues due to improved input validation.
Which versions are affected by CVE-2018-4273?
Versions prior to iOS 11.4.1, tvOS 11.4.1, watchOS 4.3.2, Safari 11.1.2, iTunes 12.8 for Windows, and iCloud for Windows 7.6 are affected by CVE-2018-4273.
What is the severity of CVE-2018-4273?
CVE-2018-4273 has a severity rating of 6.5 (medium).
How do I fix CVE-2018-4273 on Ubuntu?
To fix CVE-2018-4273 on Ubuntu, update to version 2.20.5-0ubuntu0.18.04.1 for Ubuntu 18.04, version 2.20.5-0ubuntu0.16.04.1 for Ubuntu 16.04, or version 2.20.4 for upstream.
How do I fix CVE-2018-4273 on Apple products?
To fix CVE-2018-4273 on Apple products, update to the following versions: iOS 11.4.1, tvOS 11.4.1, watchOS 4.3.2, Safari 11.1.2, or iTunes 12.8 for Windows.