PT-2023-23781 · Apple · Watchos+1

Zitong Wu

·

Published

2023-05-18

·

Updated

2023-09-06

·

CVE-2023-32417

CVSS v3.1

2.4

Low

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions watchOS versions prior to 9.5
Description This issue allows an attacker with physical access to a locked Apple Watch to potentially view user photos or contacts via accessibility features. The issue was addressed by restricting options offered on a locked device.
Recommendations For watchOS versions prior to 9.5, update to watchOS 9.5 to resolve the issue. As a temporary workaround, consider restricting accessibility features on locked devices to minimize the risk of exploitation.

Fix

Related Identifiers

CVE-2023-32417

Affected Products

Apple Macos
Watchos