First published: Mon Mar 25 2019(Updated: )
A privacy issue existed in motion sensor calibration. This issue was addressed with improved motion sensor processing. This issue is fixed in iOS 12.2, watchOS 5.2. A malicious app may be able to track users between installs.
Credit: Stan (Jiexin) Zhang Alastair R. Beresford the University of CambridgeIan Sheret Polymath Insight LimitedStan (Jiexin) Zhang Alastair R. Beresford the University of CambridgeIan Sheret Polymath Insight Limited product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <12.2 | |
Apple watchOS | <5.2 | |
Apple iOS | <12.2 | 12.2 |
Apple watchOS | <5.2 | 5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2019-8541.
The severity level of CVE-2019-8541 is low.
This vulnerability affects Apple iOS version up to but excluding 12.2.
This vulnerability affects Apple watchOS version up to but excluding 5.2.
To fix this vulnerability, update your iOS device to version 12.2 or later, and update your watchOS device to version 5.2 or later.