IOS 11

      13

For our customers" protection, táo khuyết doesn"t disclose, discuss, or confirm security issues until an investigation has occurred & patches or releases are available. Recent releases are listed on theanhhungxadieu.vn security updatespage.

Bạn đang xem: Ios 11

For more information about security, see theanhhungxadieu.vn product Securitypage. You can encrypt communications with táo khuyết using theanhhungxadieu.vn product Security PGP Key.

anhhungxadieu.vn security documents reference vulnerabilities byCVE-IDwhen possible.


*


Released January 23, 2018

Audio

Available for: iPhone 5s & later, máy tính bảng ipad Air và later, & iPod cảm ứng 6th generation

Impact: Processing a maliciously crafted audio file may lead lớn arbitrary code execution

Description: A memory corruption issue was addressed with improved input đầu vào validation.

CVE-2018-4094: Mingi Cho, Seoyoung Kim, Young-Ho Lee, MinSik Shin và Taekyoung Kwon of the Information Security Lab, Yonsei University

Entry updated November 16, 2018

Core Bluetooth

Available for: iPhone 5s và later, ipad Air and later, và iPod cảm ứng 6th generation

Impact: An application may be able lớn execute arbitrary code with system privileges

Description: A memory corruption issue was addressed with improved memory handling.

CVE-2018-4087: Rani Idan (
raniXCH) of Zimperium zLabs Team

CVE-2018-4095: Rani Idan (
raniXCH) of Zimperium zLabs Team

Graphics Driver

Available for: iPhone 5s và later, ipad tablet Air & later, and iPod touch 6th generation

Impact: An application may be able to execute arbitrary code with kernel privileges

Description: A memory corruption issue was addressed with improved memory handling.

CVE-2018-4109: Adam Donenfeld (
doadam) of the Zimperium zLabs Team

Entry added February 8, 2018

Kernel

Available for: iPhone 5s & later, máy tính bảng ipad Air and later, and iPod touch 6th generation

Impact: An application may be able khổng lồ read restricted memory

Description: A memory initialization issue was addressed with improved memory handling.

CVE-2018-4090: Jann Horn of Google Project Zero

Entry updated November 16, 2018

Kernel

Available for: iPhone 5s and later, ipad tablet Air and later, & iPod cảm ứng 6th generation

Impact: An application may be able to lớn read restricted memory

Description: A race condition was addressed with improved locking.

CVE-2018-4092: Stefan Esser of Antid0te UG

Entry updated November 16, 2018

Kernel

Available for: iPhone 5s & later, máy tính bảng ipad Air & later, và iPod cảm biến 6th generation

Impact: A malicious application may be able to execute arbitrary code with kernel privileges

Description: A memory corruption issue was addressed with improved đầu vào validation.

Xem thêm: Nabati Snack - Cách Chơi Blackjack Trên M88

CVE-2018-4082: Russ Cox of Google

Entry updated November 16, 2018

Kernel

Available for: iPhone 5s & later, máy tính bảng ipad Air & later, & iPod cảm biến 6th generation

Impact: An application may be able lớn read restricted memory

Description: A validation issue was addressed with improved input sanitization.

CVE-2018-4093: Jann Horn of Google Project Zero

Kernel

Available for: iPhone 5s và later, ipad Air và later, và iPod cảm ứng 6th generation

Impact: An application may be able lớn execute arbitrary code with kernel privileges

Description: A memory corruption issue was addressed with improved memory handling.

CVE-2018-4189: an anonymous researcher

Entry added May 2, 2018

LinkPresentation

Available for: iPhone 5s và later, máy tính bảng ipad Air and later, and iPod touch 6th generation

Impact: Processing a maliciously crafted text message may lead khổng lồ application denial of service

Description: A resource exhaustion issue was addressed with improved input đầu vào validation.

CVE-2018-4100: Abraham Masri
cheesecakeufo

Entry updated November 16, 2018

QuartzCore

Available for: iPhone 5s & later, máy tính bảng ipad Air và later, and iPod cảm biến 6th generation

Impact: Processing maliciously crafted web nội dung may lead lớn arbitrary code execution

Description: A memory corruption issue existed in the processing of website content. This issue was addressed with improved input validation.

CVE-2018-4085: Ret2 Systems Inc. Working with Trend Micro"s Zero Day Initiative

Entry updated November 16, 2018

Security

Available for: iPhone 5s and later, máy tính bảng ipad Air & later, and iPod cảm biến 6th generation

Impact: A certificate may have name constraints applied incorrectly

Description: A certificate evaluation issue existed in the handling of name constraints. This issue was addressed with improved trust evaluation of certificates.

CVE-2018-4086: Ian Haken of Netflix

Entry updated November 16, 2018

WebKit

Available for: iPhone 5s và later, máy tính bảng ipad Air và later, và iPod cảm ứng 6th generation

Impact: Processing maliciously crafted web nội dung may lead khổng lồ arbitrary code execution

Description: Multiple memory corruption issues were addressed with improved memory handling.

CVE-2018-4088: Jeonghoon Shin of Theori

CVE-2018-4089: Ivan Fratric of Google Project Zero

CVE-2018-4096: found by OSS-Fuzz

WebKit

Available for: iPhone 5s và later, ipad tablet Air and later, & iPod cảm biến 6th generation

Impact: Processing maliciously crafted web content may lead to lớn arbitrary code execution

Description: Multiple memory corruption issues were addressed with improved memory handling.

CVE-2018-4147: found by OSS-Fuzz

Entry added October 18, 2018

WebKit Page Loading

Available for: iPhone 5s & later, ipad tablet Air and later, and iPod cảm biến 6th generation

Impact: Processing maliciously crafted web content may lead to lớn arbitrary code execution

Description: Multiple memory corruption issues were addressed with improved memory handling.