Loading
A null pointer dereference was addressed with improved validation. This issue is fixed in macOS High Sierra 10.13, iCloud for Windows 7.0, watchOS 4, iOS 11, iTunes 12.7 for Windows. Processing maliciously crafted XML may lead to an unexpected application termination or arbitrary code execution.
Use CWE-476, Apple vendor hub and Icloud product page to widen CVE-2018-4302 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2022-46693, CVE-2021-30928 and CVE-2020-9926 for nearby disclosures in the same product family.