CVE-2022-32871
published 2023-04-10CVE-2022-32871: A logic issue was addressed with improved restrictions. This issue is fixed in iOS 16. A person with physical access to a device may be able to use Siri to…
PriorityP45low2.4CVSS 3.1
AVPACLPRNUINSUCLINAN
EPSS
0.26%
17.4th percentile
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 16. A person with physical access to a device may be able to use Siri to access private calendar information
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios | — | — |
| apple | ios | >= unspecified < 16 | 16 |
| apple | iphone_os | < 16.0 | 16.0 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Apple
CVE-2022-32871: iOS 16
vendor_apple·2022-09-12·CVSS 2.4
CVE-2022-32871 [LOW] CVE-2022-32871: iOS 16
Apple Security Update: About the security content of iOS 16
Product: iOS
Version: 16
CVE: CVE-2022-32871
Component: Siri
Impact: A person with physical access to a device may be able to use Siri to access private calendar information
Description: A logic issue was addressed with improved restrictions.
VulDB
Apple iOS 16 Siri information disclosure (EUVD-2022-35937)
vuldb·2026-06-04·CVSS 2.4
CVE-2022-32871 [LOW] Apple iOS 16 Siri information disclosure (EUVD-2022-35937)
A vulnerability described as problematic has been identified in Apple iOS 16. The affected element is an unknown function of the component Siri. Such manipulation leads to information disclosure.
This vulnerability is referenced as CVE-2022-32871. The attack can be executed directly on the physical device. No exploit is available.
Upgrading the affected component is recommended.
GHSA
GHSA-v8j8-9873-8h3w: A logic issue was addressed with improved restrictions
ghsa_unreviewed·2023-04-10
CVE-2022-32871 [LOW] GHSA-v8j8-9873-8h3w: A logic issue was addressed with improved restrictions
A logic issue was addressed with improved restrictions. This issue is fixed in iOS 16. A person with physical access to a device may be able to use Siri to access private calendar information
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-04-10
Published