Apple macOS APPLE-SA-2018-3-29-5 Multiple Security Vulnerabilities

BID:103582

CVE-2018-4105 | CVE-2018-4106 | CVE-2018-4107 | CVE-2018-4108 | CVE-2018-4111 | CVE-2018-4112 | CVE-2018-4132 | CVE-2018-4135 | CVE-2018-4136 | CVE-2018-4138 | CVE-2018-4139 | CVE-2018-4144 | CVE-2018-4152 | CVE-2018-4160 | CVE-2018-4170 | CVE-2018-4175 | CVE-2018-4176 |

Info

Apple macOS APPLE-SA-2018-3-29-5 Multiple Security Vulnerabilities

Bugtraq ID: 103582
Class: Unknown
CVE: CVE-2018-4105
CVE-2018-4106
CVE-2018-4107
CVE-2018-4108
CVE-2018-4111
CVE-2018-4112
CVE-2018-4132
CVE-2018-4135
CVE-2018-4136
CVE-2018-4138
CVE-2018-4139
CVE-2018-4144
CVE-2018-4152
CVE-2018-4160
CVE-2018-4170
CVE-2018-4175
CVE-2018-4176
Remote: Yes
Local: Yes
Published: Mar 29 2018 12:00AM
Updated: Mar 29 2018 12:00AM
Credit: David J Beitey (@davidjb_), Geoffrey Bugniot, Simon Hosie, an anonymous researcher, Kamatham Chaitanya of ShiftLeft Inc., Haik Aftandilian of Mozilla, Axis and pjf of IceSword Lab of Qihoo 360, Xiaolong Bai and Min (Spark) Zheng of Alibaba Inc., Jonas Jens
Vulnerable: Apple macOS 10.13.1
Apple macOS 10.13.3
Apple macOS 10.13.2
Apple macOS 10.13
Apple macOS 10.12.6
Apple Mac Os X 10.11.6
Not Vulnerable: Apple macOS 10.13.4

Discussion

Apple macOS APPLE-SA-2018-3-29-5 Multiple Security Vulnerabilities

Apple macOS is prone to multiple security vulnerabilities.

Attackers can exploit these issues to obtain sensitive information, bypass security restrictions, execute arbitrary code, obtain elevated privileges and perform unauthorized action; this may aid in launching further attacks.

Exploit / POC

Apple macOS APPLE-SA-2018-3-29-5 Multiple Security Vulnerabilities

Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].

Some of these issues may be trivial to exploit and will not require specific exploit code.

Solution / Fix

Apple macOS APPLE-SA-2018-3-29-5 Multiple Security Vulnerabilities

Solution:
Updates are available. Please see the references or vendor advisory for more information.

References

Apple macOS APPLE-SA-2018-3-29-5 Multiple Security Vulnerabilities

References:

© CVE.report 2026

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

Free CVE JSON API cve.report/api

CVE.report and Source URL Uptime Status status.cve.report