PT-2022-7232 · Apple · Apple Macos

Csaba Fitzl

+1

·

Published

2022-10-24

·

Updated

2024-01-17

·

CVE-2022-48504

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions macOS versions prior to 13
Description The issue is related to inadequate access control in the Find My function of the macOS operating system, which may allow an attacker to disclose protected information. It was addressed with improved handling of caches. An app may be able to access user-sensitive data.
Recommendations For versions prior to 13, update to macOS Ventura 13 to resolve the issue.

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

BDU:2024-00526
CVE-2022-48504

Affected Products

Apple Macos