CVE-2018-4435: Input Validation
Published Dec 5, 2018
·Updated
A logic issue was addressed with improved restrictions. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS 12.1.1, watchOS 5.1.2.
Other sources
Kernel. A logic issue was addressed with improved restrictions.
Credit
Jann Horn(Google Project Zero), Juwei Lin@@panicaII, Junzhi Lu(TrendMicro Mobile Security Team working with Trend Micro)
Affected Software
10 affected componentsFixes available
Apple tvOS<12.1.1
12.1.1
Apple macOS Mojave<10.14.2
10.14.2
Apple High Sierra
Apple Sierra
Apple WatchOS<5.1.2
5.1.2
Apple iOS<12.1.1
12.1.1
Apple iPhone OS<12.1.1
Apple iOS and macOS<10.14.2
Apple tvOS<12.1.1
Apple WatchOS<5.1.2
Event History
Apr 3, 2019
CVE Published
via MITRE·05:43 PM
Data Sourced
via MITRE·05:43 PM
DescriptionWeakness
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2018-4303
- CVE-2018-4427
- CVE-2018-4431
- CVE-2018-4448
- CVE-2018-4460
- CVE-2018-4435
- CVE-2018-4447
- CVE-2018-4461
- CVE-2018-4436
- CVE-2018-4441
- CVE-2018-4442
- CVE-2018-4443
- CVE-2018-4438
- CVE-2018-4444
- CVE-2018-4437
- CVE-2018-4464
- CVE-2018-4462
- CVE-2018-4463
- CVE-2018-4465
- CVE-2018-4467
- CVE-2018-4452
- CVE-2018-4434
- CVE-2018-4456
- CVE-2018-4421
- CVE-2018-4449
- CVE-2018-4450
- CVE-2018-4429
- CVE-2018-4430
- CVE-2018-4446
- CVE-2018-4439
- CVE-2018-4440
- CVE-2018-4445
- CVE-2018-4428
Frequently Asked Questions
1
What is the severity of CVE-2018-4435?
The severity of CVE-2018-4435 is high with a severity value of 7.8.
2
Which versions of iOS are affected by CVE-2018-4435?
Versions prior to iOS 12.1.1 are affected by CVE-2018-4435.
3
Which versions of macOS are affected by CVE-2018-4435?
Versions prior to macOS Mojave 10.14.2 are affected by CVE-2018-4435.
4
Which versions of tvOS are affected by CVE-2018-4435?
Versions prior to tvOS 12.1.1 are affected by CVE-2018-4435.
5
Which versions of watchOS are affected by CVE-2018-4435?
Versions prior to watchOS 5.1.2 are affected by CVE-2018-4435.
6
How can I fix CVE-2018-4435?
Update to iOS 12.1.1, macOS Mojave 10.14.2, tvOS 12.1.1, or watchOS 5.1.2 to fix CVE-2018-4435.