CVE-2018-4083 is a memory corruption vulnerability affecting macOS before version 10.13.3, specifically within the Touch Bar Support component. An attacker can exploit this flaw via a crafted application to achieve arbitrary code execution in a privileged context or cause a denial of service. With a CVSS score of 7.8 (High), this vulnerability requires user interaction (running a malicious app) but can lead to significant impact on confidentiality, integrity, and availability. While no active exploitation is confirmed, a public exploit (EDB-44007) demonstrating a use-after-free condition exists, though there is minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 10.13.3CPE matchmatch criteria | cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.