cbcvebase.
CVE-2023-28203
published 2023-07-28

CVE-2023-28203: The issue was addressed with improved checks. This issue is fixed in Apple Music 4.2.0 for Android. An app may be able to access contacts.

medium5.5CVSS 3.1
AVLACLPRNUIRSUCHINAN
The issue was addressed with improved checks. This issue is fixed in Apple Music 4.2.0 for Android. An app may be able to access contacts.

Affected

3 ranges
VendorProductVersion rangeFixed in
appleapple_music_4.2.0_for_android
appleapple_music_for_android>= unspecified < 4.24.2
applemusic< 4.2.04.2.0