The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.
An out-of-bounds read was addressed with improved bounds checking. This issue affected versions prior to iOS 12, macOS Mojave 10.14, tvOS 12, watchOS 5.
Base Score: 5
Impact Score: 2.9
Exploitability Score: 10
Base Score: 7.5
Impact Score: 3.6
Exploitability Score: 3.9
|700552||Apple iOS < 12.0 Multiple Vulnerabilities (EFAIL, APPLE-SA-2018-9-24-4 and APPLE-SA-2018-10-30-8)||Nessus Network Monitor||Mobile Devices|
|700518||macOS < 10.14 Multiple Vulnerabilities||Nessus Network Monitor||Operating System Detection|
|118575||macOS 10.13.6 Multiple Vulnerabilities (Security Update 2018-002)||Nessus||MacOS X Local Security Checks|
|118573||macOS and Mac OS X Multiple Vulnerabilities (Security Update 2018-005)||Nessus||MacOS X Local Security Checks|
|118178||macOS < 10.14 Multiple Vulnerabilities||Nessus||MacOS X Local Security Checks|
|117632||Apple iOS < 12.0 Multiple Vulnerabilities (EFAIL)||Nessus||Mobile Devices|