PT-2023-23781 · Apple · Watchos+1
Zitong Wu
·
Publicado
2023-05-18
·
Atualizado
2023-09-06
·
CVE-2023-32417
CVSS v3.1
2.4
Baixa
| Vetor | AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
watchOS versions prior to 9.5
Description
This issue allows an attacker with physical access to a locked Apple Watch to potentially view user photos or contacts via accessibility features. The issue was addressed by restricting options offered on a locked device.
Recommendations
For watchOS versions prior to 9.5, update to watchOS 9.5 to resolve the issue. As a temporary workaround, consider restricting accessibility features on locked devices to minimize the risk of exploitation.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Apple Macos
Watchos