
CVE-2018-4298
https://notcve.org/view.php?id=CVE-2018-4298
11 Jan 2019 — In macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, a permissions issue existed in Remote Management. This issue was addressed through improved permission validation. En macOS High Sierra en versiones anteriores a la 10.13.3, la actualización de seguridad (Security Update) 2018-001 Sierra y el Security Update 2018-001 El Capitan, existía un problema de permisos en la gestión remota. Este problema se abordó mediante la mejora de la validación de perm... • https://support.apple.com/HT208465 •

CVE-2016-4642
https://notcve.org/view.php?id=CVE-2016-4642
11 Jan 2019 — In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, proxy authentication incorrectly reported HTTP proxies received credentials securely. This issue was addressed through improved warnings. En iOS en versiones anteriores a la 9.3.3, tvOS en versiones anteriores a la 9.2.2 y OS X El Capitan en versiones anteriores a la v10.11.6 y la actualización de seguridad (Security Update) 2016-004, la autenticación por proxy reportó incorrectamente los proxies HTTP q... • https://support.apple.com/HT206902 • CWE-254: 7PK - Security Features •

CVE-2018-4189
https://notcve.org/view.php?id=CVE-2018-4189
11 Jan 2019 — In iOS before 11.2.5, macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, watchOS before 4.2.2, and tvOS before 11.2.5, a memory corruption issue exists and was addressed with improved memory handling. En iOS en versiones anteriores a la 11.2.5, macOS High Sierra en versiones anteriores a la 10.13.3, las actualizaciones de seguridad (Security Update) 2018-001 Sierra y 2018-001 El Capitan, watchOS en versiones anteriores a la 4.2.2 y tvOS en versiones a... • https://support.apple.com/HT208462 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2017-13891
https://notcve.org/view.php?id=CVE-2017-13891
11 Jan 2019 — In iOS before 11.2, an inconsistent user interface issue was addressed through improved state management. En iOS en versiones anteriores a la 11.2, se abordó un problema de interfaz de usuario inconsistente mediante la mejora de la gestión de estados. • https://support.apple.com/HT208334 • CWE-20: Improper Input Validation •

CVE-2016-4644
https://notcve.org/view.php?id=CVE-2016-4644
11 Jan 2019 — In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a downgrade issue existed with HTTP authentication credentials saved in Keychain. This issue was addressed by storing the authentication types with the credentials. En iOS en versiones anteriores a la 9.3.3, tvOS en versiones anteriores a la 9.2.2 y OS X El Capitan en versiones anteriores a la v10.11.6 y la actualización de seguridad (Security Update) 2016-004, existía un problema de degradación con las... • https://support.apple.com/HT206902 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2016-4643
https://notcve.org/view.php?id=CVE-2016-4643
11 Jan 2019 — In iOS before 9.3.3, tvOS before 9.2.2, and OS X El Capitan before v10.11.6 and Security Update 2016-004, a validation issue existed in the parsing of 407 responses. This issue was addressed through improved response validation. En iOS en versiones anteriores a la 9.3.3, tvOS en versiones anteriores a la 9.2.2 y OS X El Capitan en versiones anteriores a la v10.11.6 y la actualización de seguridad (Security Update) 2016-004, existía un problema de validación en el análisis de respuestas 407. Este problema se... • https://support.apple.com/HT206902 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2018-4431 – Apple Security Advisory 2018-12-05-2
https://notcve.org/view.php?id=CVE-2018-4431
06 Dec 2018 — A memory initialization issue was addressed with improved memory handling. This issue affected versions prior to iOS 12.1.1, macOS Mojave 10.14.2, tvOS 12.1.1, watchOS 5.1.2. Un problema de inicialización de memoria se abordó con una gestión de memoria mejorada. Este problema afectaba a iOS en versiones anteriores a la 12.1.1; macOS Mojave en versiones anteriores a la 10.14.2; tvOS en versiones anteriores a la 12.1.1 y watchOS en versiones anteriores a la 5.1.2. macOS Mojave 10.14.2, Security Update 2018-00... • https://github.com/ktiOSz/PoC_iOS12 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2018-4445 – Apple Security Advisory 2018-12-05-4
https://notcve.org/view.php?id=CVE-2018-4445
06 Dec 2018 — "Clear History and Website Data" did not clear the history. The issue was addressed with improved data deletion. This issue affected versions prior to iOS 12.1.1, Safari 12.0.2. >"Clear History and Website Data" no limpió el historial. Este problema se abordó con una supresión de datos mejorada. • https://support.apple.com/kb/HT209340 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2018-4430 – Apple Security Advisory 2018-12-05-1
https://notcve.org/view.php?id=CVE-2018-4430
06 Dec 2018 — A lock screen issue allowed access to contacts on a locked device. This issue was addressed with improved state management. This issue affected versions prior to iOS 12.1.1. Un problema de bloqueo de pantalla permitía el acceso a los contactos en un dispositivo bloqueado. Este problema se abordó con una gestión de estado mejorada. • https://support.apple.com/kb/HT209340 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2018-4436 – Apple Security Advisory 2018-12-05-1
https://notcve.org/view.php?id=CVE-2018-4436
06 Dec 2018 — A certificate validation issue existed in configuration profiles. This was addressed with additional checks. This issue affected versions prior to iOS 12.1.1, tvOS 12.1.1, watchOS 5.1.2. Existía un problema de validación de certificados en los perfiles de configuración. El problema se abordó con comprobaciones adicionales. • https://support.apple.com/kb/HT209340 • CWE-295: Improper Certificate Validation •