PT-2019-19121 · Apple · Watchos+2
David Kreitschmann
+1
·
Published
2019-12-18
·
Updated
2019-12-20
·
CVE-2019-8620
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
iOS versions prior to 12.3
tvOS versions prior to 12.3
watchOS versions prior to 5.2.1
Description
A user privacy issue allowed devices to be passively tracked by their WiFi MAC address. This issue has been addressed by removing the broadcast MAC address.
Recommendations
For iOS versions prior to 12.3, update to iOS 12.3 or later to resolve the issue.
For tvOS versions prior to 12.3, update to tvOS 12.3 or later to resolve the issue.
For watchOS versions prior to 5.2.1, update to watchOS 5.2.1 or later to resolve the issue.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ios
Tvos
Watchos