CVE-2019-8799 — Insecure Storage of Sensitive Information in Apple IOS AND Ipados
Severity
2.4LOWNVD
EPSS
0.1%
top 78.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 27
Latest updateMay 24
Description
This issue was resolved by replacing device names with a random identifier. This issue is fixed in iOS 13.1 and iPadOS 13.1, macOS Catalina 10.15, watchOS 6, tvOS 13. An attacker in physical proximity may be able to passively observe device names in AWDL communications.
CVSS vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 0.9 | Impact: 1.4
Affected Packages13 packages
🔴Vulnerability Details
1GHSA▶
GHSA-mgpg-rp6c-97r2: This issue was resolved by replacing device names with a random identifier↗2022-05-24