PT-2023-23781 · Apple · Watchos+1

·

CVE-2023-32417

·

Published

2023-05-18

·

Updated

2023-09-06

CVSS v3.1

2.4

Low

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions watchOS versions prior to 9.5
Description This issue allows an attacker with physical access to a locked Apple Watch to potentially view user photos or contacts via accessibility features. The issue was addressed by restricting options offered on a locked device.
Recommendations For watchOS versions prior to 9.5, update to watchOS 9.5 to resolve the issue. As a temporary workaround, consider restricting accessibility features on locked devices to minimize the risk of exploitation.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2023-32417

Affected Products

Apple Macos
Watchos