VYPR
Unrated severityNVD Advisory· Published Apr 3, 2019· Updated Aug 5, 2024

CVE-2018-4353

CVE-2018-4353

Description

A configuration issue was addressed with additional restrictions. This issue affected versions prior to macOS Mojave 10.14.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

A configuration issue in macOS before Mojave 10.14 allowed Bluetooth access without proper restrictions, leading to potential unauthorized data access.

Vulnerability

A configuration issue in the Bluetooth component of macOS allowed unrestricted access to certain features. This issue affected versions prior to macOS Mojave 10.14, as disclosed in Apple's security advisory [1]. The vulnerability was addressed by adding additional restrictions to Bluetooth configuration.

Exploitation

An attacker with physical proximity to a vulnerable device could exploit this configuration issue without authentication. The attack requires Bluetooth to be enabled on the target device. No user interaction is needed beyond normal device operation.

Impact

Successful exploitation could allow an attacker to access Bluetooth-related data or functionality without proper authorization. This could lead to unauthorized information disclosure or manipulation of Bluetooth connections.

Mitigation

The issue is fixed in macOS Mojave 10.14, released on September 24, 2018 [1]. Users should update to macOS Mojave 10.14 or later to address this vulnerability. No workarounds are documented for unpatched systems.

AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

2

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.