PT-2023-23781 · Apple · Watchos+1
Zitong Wu
·
Published
2023-05-18
·
Updated
2023-09-06
·
CVE-2023-32417
CVSS v3.1
2.4
Low
| Vector | AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
watchOS versions prior to 9.5
Description
This issue allows an attacker with physical access to a locked Apple Watch to potentially view user photos or contacts via accessibility features. The issue was addressed by restricting options offered on a locked device.
Recommendations
For watchOS versions prior to 9.5, update to watchOS 9.5 to resolve the issue. As a temporary workaround, consider restricting accessibility features on locked devices to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Apple Macos
Watchos