Apple · Sierra · CVE-2019-8777
**Name of the Vulnerable Software and Affected Versions**
macOS versions prior to 10.14.4
Security Update versions prior to 2019-002 High Sierra
Security Update versions prior to 2019-002 Sierra
**Description**
A lock screen issue allowed unauthorized access to contacts on a locked device. The problem was caused by inadequate state management. A local attacker could potentially view contacts from the lock screen.
**Recommendations**
For macOS versions prior to 10.14.4, update to macOS Mojave 10.14.4 or later.
For Security Update versions prior to 2019-002 High Sierra, apply Security Update 2019-002 High Sierra or later.
For Security Update versions prior to 2019-002 Sierra, apply Security Update 2019-002 Sierra or later.