CVE-2018-4444: Medium severity tvos vulnerability
A logic issue was addressed with improved state management. This issue is fixed in Safari 12.0.2, iOS 12.1.1, tvOS 12.1.1, iTunes 12.9.2 for Windows. Processing maliciously crafted web content may disclose sensitive user information.
Other sources
WebKit. A logic issue was addressed with improved state management.
Credit
Affected Software
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2018-4303
- CVE-2018-4427
- CVE-2018-4431
- CVE-2018-4448
- CVE-2018-4460
- CVE-2018-4435
- CVE-2018-4447
- CVE-2018-4461
- CVE-2018-4436
- CVE-2018-4441
- CVE-2018-4442
- CVE-2018-4443
- CVE-2018-4438
- CVE-2018-4444
- CVE-2018-4437
- CVE-2018-4464
- CVE-2018-4440
- CVE-2018-4439
- CVE-2018-4445
- CVE-2018-4465
- CVE-2018-4430
- CVE-2018-4446
- CVE-2018-4429
- CVE-2018-4428
Frequently Asked Questions
What is CVE-2018-4444?
CVE-2018-4444 is a vulnerability in WebKit that allows processing maliciously crafted web content to disclose sensitive user information.
What is the severity of CVE-2018-4444?
The severity of CVE-2018-4444 is medium with a CVSS score of 6.5.
Which Apple products are affected by CVE-2018-4444?
The affected Apple products are Safari (up to version 12.0.2), iOS (up to version 12.1.1), tvOS (up to version 12.1.1), and iTunes for Windows (up to version 12.9.2).
How can I fix CVE-2018-4444?
To fix CVE-2018-4444, update Safari to version 12.0.2, iOS to version 12.1.1, tvOS to version 12.1.1, and iTunes for Windows to version 12.9.2.
Where can I find more information about CVE-2018-4444?
You can find more information about CVE-2018-4444 on the Apple security support website at the following links: [link1](https://support.apple.com/en-us/HT209342), [link2](https://support.apple.com/en-us/HT209340), [link3](https://support.apple.com/en-us/HT209344).