VulnerabilityModified
CVE-2022-32918
An app may be able to bypass Privacy preferences.
MEDIUM 5.5EPSS 0.22%
Does this matter?
Lower severity and a low EPSS score (0.22%). Track it; it rarely justifies an emergency change on its own.
Description
This issue was addressed with improved data protection. This issue is fixed in iOS 16, macOS Ventura 13. An app may be able to bypass Privacy preferences.
- CVSS 3.1
- 5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
- EPSS
- 0.22% probability · 13th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-284
- Affected
- apple/iphone os · apple/macos
- Source
- product-security@apple.com
References
- https://support.apple.com/en-us/HT213446Vendor Advisory
- https://support.apple.com/en-us/HT213488Vendor Advisory
- https://support.apple.com/en-us/HT213446Vendor Advisory
- https://support.apple.com/en-us/HT213488Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.