CVE-2018-4314
8.8
HIGH
CVSS 3.1
EPSS 40.7%
Description
A use after free issue was addressed with improved memory management. This issue affected versions prior to iOS 12, tvOS 12, Safari 12, iTunes 12.9 for Windows, iCloud for Windows 7.7.
How to fix CVE-2018-4314
To remediate CVE-2018-4314, upgrade the affected package to a fixed version below.
- Debian/webkit2gtk—upgrade to 2.22.0-2 or later
Is CVE-2018-4314 being exploited?
Moderate — EPSS is 40.7%. Track this CVE but it's not at the top of the prioritisation list.
Affected packages (1)
- from 0, < 2.22.0-2
CVSS scores
| Source | Version | Severity | Vector |
|---|---|---|---|
| osv | CVSS 3.1 | HIGH8.8 | CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |