Unrated severityNVD Advisory· Published Apr 3, 2018· Updated Aug 5, 2024
CVE-2018-4117
CVE-2018-4117
Description
An issue was discovered in certain Apple products. iOS before 11.3 is affected. Safari before 11.1 is affected. iCloud before 7.4 on Windows is affected. iTunes before 12.7.4 on Windows is affected. watchOS before 4.3 is affected. The issue involves the fetch API in the "WebKit" component. It allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted web site.
Affected products
7- osv-coords7 versionspkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/gtk3&distro=openSUSE%20Tumbleweedpkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3pkg:rpm/suse/webkit2gtk3&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP3
< 93.0.4577.82-1.1+ 6 more
- (no CPE)range: < 93.0.4577.82-1.1
- (no CPE)range: < 2.32.4-1.1
- (no CPE)range: < 2.20.3-2.23.8
- (no CPE)range: < 2.20.3-2.23.8
- (no CPE)range: < 2.20.3-2.23.8
- (no CPE)range: < 2.20.3-2.23.8
- (no CPE)range: < 2.20.3-2.23.8
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
12- access.redhat.com/errata/RHSA-2018:2282mitrevendor-advisoryx_refsource_REDHAT
- security.gentoo.org/glsa/201808-01mitrevendor-advisoryx_refsource_GENTOO
- security.gentoo.org/glsa/201808-04mitrevendor-advisoryx_refsource_GENTOO
- usn.ubuntu.com/3635-1/mitrevendor-advisoryx_refsource_UBUNTU
- www.debian.org/security/2018/dsa-4256mitrevendor-advisoryx_refsource_DEBIAN
- www.securityfocus.com/bid/104887mitrevdb-entryx_refsource_BID
- www.securitytracker.com/id/1040604mitrevdb-entryx_refsource_SECTRACK
- support.apple.com/HT208693mitrex_refsource_CONFIRM
- support.apple.com/HT208694mitrex_refsource_CONFIRM
- support.apple.com/HT208695mitrex_refsource_CONFIRM
- support.apple.com/HT208696mitrex_refsource_CONFIRM
- support.apple.com/HT208697mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.