PT-2024-29070 · Apple · Ipados+2

Jacob Braun

·

Published

2024-07-29

·

Updated

2024-10-29

·

CVE-2024-40813

CVSS v3.1

4.6

Medium

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions watchOS versions prior to 10.6 iOS versions prior to 17.6 iPadOS versions prior to 17.6
Description A lock screen issue was addressed with improved state management. An attacker with physical access may be able to use Siri to access sensitive user data.
Recommendations For watchOS versions prior to 10.6, update to watchOS 10.6 to resolve the issue. For iOS versions prior to 17.6, update to iOS 17.6 to resolve the issue. For iPadOS versions prior to 17.6, update to iPadOS 17.6 to resolve the issue.

Fix

Insecure Storage of Sensitive Information

Weakness Enumeration

Related Identifiers

CVE-2024-40813

Affected Products

Ios
Ipados
Watchos