CVE-2018-4346
https://notcve.org/view.php?id=CVE-2018-4346
A validation issue existed which allowed local file access. This was addressed with input sanitization. This issue affected versions prior to macOS Mojave 10.14. Existía un problema de validación que permitía el acceso a archivos locales. Este problema se abordó con un saneamiento de entradas. • https://support.apple.com/kb/HT209139 https://support.apple.com/kb/HT209193 • CWE-20: Improper Input Validation •
CVE-2017-7151
https://notcve.org/view.php?id=CVE-2017-7151
A race condition was addressed with additional validation. This issue affected versions prior to iOS 11.2, macOS High Sierra 10.13.2, tvOS 11.2, watchOS 4.2, iTunes 12.7.2 for Windows, macOS High Sierra 10.13.4. Una condición de carrera se abordó con una validación adicional. El problema afectaba a iOS, en versiones anteriores a la 11.2; macOS High Sierra,en versiones anteriores a la 10.13.2; tvOS, en versiones anteriores a la 11.2; watchOS, en versiones anteriores a la 4.2; iTunes para Windows, en versiones anteriores a la 12.7.2 y macOS High Sierra, en versiones anteriores a la 10.13.4. • https://support.apple.com/kb/HT208325 https://support.apple.com/kb/HT208326 https://support.apple.com/kb/HT208327 https://support.apple.com/kb/HT208331 https://support.apple.com/kb/HT208334 https://support.apple.com/kb/HT208692 • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition') •
CVE-2018-4407 – iOS 11.4.1 / macOS 10.13.6 icmp_error Heap Buffer Overflow
https://notcve.org/view.php?id=CVE-2018-4407
A memory corruption issue was addressed with improved validation. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5. Un problema de corrupción de memoria se abordó con una validación mejorada. Este problema afectaba a iOS en versiones anteriores a la 12, macOS Mojave en versiones anteriores a la 10.14, tvOS en versiones anteriores a la 12 y watchOS en versiones anteriores a la 5. • https://github.com/r3dxpl0it/CVE-2018-4407 https://github.com/WyAtu/CVE-2018-4407 https://github.com/anonymouz4/Apple-Remote-Crash-Tool-CVE-2018-4407 https://github.com/zteeed/CVE-2018-4407-IOS https://github.com/zeng9t/CVE-2018-4407-iOS-exploit https://github.com/szabo-tibor/CVE-2018-4407 https://github.com/Fans0n-Fan/CVE-2018-4407 https://github.com/lucagiovagnoli/CVE-2018-4407 https://github.com/5431/CVE-2018-4407 https://github.com/s2339956/check_icmp_dos- • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2019-8546
https://notcve.org/view.php?id=CVE-2019-8546
An access issue was addressed with additional sandbox restrictions. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, watchOS 5.2. A local user may be able to view sensitive user information. Un problema de acceso fue abordado con restricciones de sandbox adicionales. Este problema es corregido en iOS versión 12.2, macOS Mojave versión 10.14.4, watchOS versión 5.2. • https://support.apple.com/HT209599 https://support.apple.com/HT209600 https://support.apple.com/HT209602 •
CVE-2019-8552
https://notcve.org/view.php?id=CVE-2019-8552
A memory initialization issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. A malicious application may be able to elevate privileges. Un problema de inicialización de memoria fue abordado mejorando el manejo de la memoria. Este problema es corregido en iOS versión 12.2, macOS Mojave versión 10.14.4, tvOS versión 12.2, watchOS versión 5.2. • https://support.apple.com/HT209599 https://support.apple.com/HT209600 https://support.apple.com/HT209601 https://support.apple.com/HT209602 • CWE-665: Improper Initialization •