CVE-2024-23292
Description
This issue was addressed with improved data protection. This issue is fixed in iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4. An app may be able to access information about a user's contacts.
CWE
- CWE-200 — CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
Affected
- Apple / iOS and iPadOS — v=0 <17.4 [affected]
- Apple / macOS — v=0 <14.4 [affected]
CVSS
- (none)
References
Source
cvelistV5-main/cves/2024/23xxx/CVE-2024-23292.json