CVE-2024-27835

This issue was addressed through improved state management. This issue is fixed in iOS 17.5 and iPadOS 17.5. An attacker with physical access to an iOS device may be able to access notes from the lock screen.
Configurations

No configuration.

History

29 Aug 2024, 20:36

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 2.4
CWE CWE-287

10 Jun 2024, 18:15

Type Values Removed Values Added
References
  • () https://support.apple.com/kb/HT214101 -

10 Jun 2024, 17:16

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2024/May/10 -
Summary
  • (es) Esta cuestión se abordó mediante una mejora de gestión de estado. Este problema se solucionó en iOS 17.5 y iPadOS 17.5. Un atacante con acceso físico a un dispositivo iOS puede acceder a notas desde la pantalla de bloqueo.

14 May 2024, 15:13

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-14 15:13

Updated : 2024-08-29 20:36


NVD link : CVE-2024-27835

Mitre link : CVE-2024-27835

CVE.ORG link : CVE-2024-27835


JSON object : View

Products Affected

No product.

CWE
CWE-287

Improper Authentication