CVE-2022-32846
published 2023-02-27CVE-2022-32846: A logic issue was addressed with improved state management. This issue is fixed in Apple Music 3.9.10 for Android. An app may be able to access user-sensitive…
PriorityP338high7.5CVSS 3.1
AVNACLPRNUINSUCHINAN
EPSS
0.61%
45.3th percentile
A logic issue was addressed with improved state management. This issue is fixed in Apple Music 3.9.10 for Android. An app may be able to access user-sensitive data.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | apple_music_3.9.10_for_android | — | — |
| apple | apple_music_for_android | >= unspecified < 3.9 | 3.9 |
| apple | music | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-wj5g-5xxg-2f92: A logic issue was addressed with improved state management
ghsa_unreviewed·2023-02-27
CVE-2022-32846 [HIGH] CWE-664 GHSA-wj5g-5xxg-2f92: A logic issue was addressed with improved state management
A logic issue was addressed with improved state management. This issue is fixed in Apple Music 3.9.10 for Android. An app may be able to access user-sensitive data.
Apple
CVE-2022-32846: Apple Music 3.9.10 for Android
vendor_apple·2022-06-14·CVSS 7.5
CVE-2022-32846 [HIGH] CVE-2022-32846: Apple Music 3.9.10 for Android
Apple Security Update: About the security content of Apple Music 3.9.10 for Android
Product: Apple Music 3.9.10 for Android
CVE: CVE-2022-32846
Impact: An app may be able to access user-sensitive data
Description: A logic issue was addressed with improved state management.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-02-27
Published