PT-2023-13203 · Apple · Music

Hluwa

·

Published

2023-02-27

·

Updated

2025-03-11

·

CVE-2022-32836

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Apple Music versions prior to 3.9.10
Description The issue allows an app to potentially access user-sensitive data due to inadequate state management. This has been addressed with improved state management.
Recommendations For versions prior to 3.9.10, update to Apple Music 3.9.10 for Android to resolve the issue.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-32836

Affected Products

Music