PT-2016-6101 · Apple · Watchos+1
Ahmad-Reza Sadeghi
+5
·
Published
2016-09-18
·
Updated
2017-08-13
·
CVE-2016-4719
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Apple iOS versions prior to 10
Apple watchOS versions prior to 3
Description
The issue concerns the GeoServices component, which does not properly restrict access to PlaceData information. This allows attackers to discover physical locations via a crafted application.
Recommendations
For Apple iOS versions prior to 10, update to version 10 or later to resolve the issue.
For Apple watchOS versions prior to 3, update to version 3 or later to resolve the issue.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ios
Watchos