CVE-2022-32867Insecure Storage of Sensitive Information in Apple Macos

Severity
2.4LOWNVD
EPSS
0.1%
top 79.87%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 1
Latest updateNov 2

Description

This issue was addressed with improved data protection. This issue is fixed in iOS 16, macOS Ventura 13. A user with physical access to an iOS device may be able to read past diagnostic logs.

CVSS vector

CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 0.9 | Impact: 1.4

Affected Packages5 packages

CVEListV5apple/macosunspecified13+1
NVDapple/macos< 13.0
NVDapple/iphone_os< 16.0
Appleapple/ios16

🔴Vulnerability Details

1
GHSA
GHSA-v2vp-9rm4-g6h9: This issue was addressed with improved data protection2022-11-02

📋Vendor Advisories

2
Apple
CVE-2022-32867: macOS Ventura 132022-10-24
Apple
CVE-2022-32867: iOS 162022-09-12