Lucene search

K
vulnrichmentAppleVULNRICHMENT:CVE-2024-40822
HistoryJul 29, 2024 - 10:16 p.m.

CVE-2024-40822

2024-07-2922:16:58
apple
github.com
5
cve-2024-40822
watchos 10.6
macos sonoma 14.6
ios 17.6
ipados 17.6
ios 16.7.9
ipados 16.7.9
physical access threat
lock screen vulnerability

AI Score

5.3

Confidence

Low

EPSS

0.001

Percentile

21.7%

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial

This issue was addressed by restricting options offered on a locked device. This issue is fixed in watchOS 10.6, macOS Sonoma 14.6, iOS 17.6 and iPadOS 17.6, iOS 16.7.9 and iPadOS 16.7.9. An attacker with physical access to a device may be able to access contacts from the lock screen.

CNA Affected

[
  {
    "vendor": "Apple",
    "product": "iOS and iPadOS",
    "versions": [
      {
        "status": "affected",
        "version": "unspecified",
        "lessThan": "17.6",
        "versionType": "custom"
      }
    ]
  },
  {
    "vendor": "Apple",
    "product": "iOS and iPadOS",
    "versions": [
      {
        "status": "affected",
        "version": "unspecified",
        "lessThan": "16.7",
        "versionType": "custom"
      }
    ]
  },
  {
    "vendor": "Apple",
    "product": "watchOS",
    "versions": [
      {
        "status": "affected",
        "version": "unspecified",
        "lessThan": "10.6",
        "versionType": "custom"
      }
    ]
  },
  {
    "vendor": "Apple",
    "product": "macOS",
    "versions": [
      {
        "status": "affected",
        "version": "unspecified",
        "lessThan": "14.6",
        "versionType": "custom"
      }
    ]
  }
]

AI Score

5.3

Confidence

Low

EPSS

0.001

Percentile

21.7%

SSVC

Exploitation

none

Automatable

no

Technical Impact

partial

Related for VULNRICHMENT:CVE-2024-40822