CERT-In Advisory
CIAD-2018-0019
Multiple Vulnerabilities in Apple iOS
Original Issue Date: June 27, 2018
Severity Rating: High
Systems Affected
- Apple iOS versions prior to 11.4
Overview
Multiple vulnerabilities have been reported in Apple iOS which could allow an attacker to execute arbitrary code, denial of service condition (DoS), obtain potentially sensitive information, bypass security controls or gain elevated privileges on the targeted system.
Description
These vulnerabilities are caused due to improper memory handling, buffer overflow, out-of-bounds memory read error, race condition and insufficient input validation. A remote attacker could exploit these vulnerabilities by persuading a user to open a specially crafted file or malicious application.
Successful exploitation of these vulnerabilities could allow an attacker to execute arbitrary code, obtain sensitive information, gain elevated privileges, address bar spoofing or cause Denial of Service (DoS) conditions on the targeted system.
Solution
Upgrade to Apple iOS 11.4
Apple Security Advisory HT208848
Vendor Information
Apple
https://support.apple.com/en-us/HT208848
References
Apple
https://support.apple.com/en-us/HT208848
Security Tracker
https://securitytracker.com/id/1041031
CVE Name
CVE-2018-4215
CVE-2018-4100
CVE-2018-4211
CVE-2018-4202
CVE-2018-4241
CVE-2018-4243
CVE-2018-4249
CVE-2018-4237
CVE-2018-4239
CVE-2018-4227
CVE-2018-4235
CVE-2018-4240
CVE-2018-4250
CVE-2018-4247
CVE-2018-4221
CVE-2018-4223
CVE-2018-4224
CVE-2018-4225
CVE-2018-4226
CVE-2018-4238
CVE-2018-4252
CVE-2018-4244
CVE-2018-4198
CVE-2018-4188
CVE-2018-4201
CVE-2018-4218
CVE-2018-4233
CVE-2018-4199
CVE-2018-4232
CVE-2018-4192
CVE-2018-4214
CVE-2018-4204
CVE-2018-4246
CVE-2018-4190
CVE-2018-4222
Disclaimer
The information provided herein is on "as is" basis, without warranty of any kind.
Contact Information
Email: info@cert-in.org.in Phone: +91-11-24368572
Postal address
Indian Computer Emergency Response Team (CERT-In) Ministry of Electronics and Information Technology Government of India Electronics Niketan 6, CGO Complex, Lodhi Road, New Delhi - 110 003 India
|