High severity7.8NVD Advisory· Published Apr 3, 2018· Updated Jun 17, 2026
CVE-2018-4087
CVE-2018-4087
Description
An issue was discovered in certain Apple products. iOS before 11.2.5 is affected. tvOS before 11.2.5 is affected. watchOS before 4.2.2 is affected. The issue involves the "Core Bluetooth" component. It allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- Range: <11.2.5
- Range: <11.2.5
<4.2.2+ 1 more
- (no CPE)range: <4.2.2
- cpe:2.3:o:apple:watchos:*:*:*:*:*:*:*:*range: <4.2.2
Patches
Vulnerability mechanics
References
7- blog.zimperium.com/cve-2018-4087-poc-escaping-sandbox-misleading-bluetoothd/nvdExploitThird Party Advisory
- www.exploit-db.com/exploits/44215/nvdExploitThird Party AdvisoryVDB Entry
- www.securityfocus.com/bid/102774nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1040265nvdThird Party AdvisoryVDB Entry
- support.apple.com/HT208462nvdVendor Advisory
- support.apple.com/HT208463nvdVendor Advisory
- support.apple.com/HT208464nvdVendor Advisory
News mentions
0No linked articles in our index yet.