First published: Mon Mar 25 2019(Updated: )
ReplayKit. An API issue existed in the handling of microphone data. This issue was addressed with improved validation.
Credit: an anonymous researcher product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <12.2 | |
Apple iOS | <12.2 | 12.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2019-8566 is a vulnerability that exists in the handling of microphone data in iOS 12.2 and earlier.
CVE-2019-8566 has a severity value of 3.3, which is considered medium.
A malicious application can exploit CVE-2019-8566 to access the microphone without indication to the user.
CVE-2019-8566 is fixed in iOS 12.2, so updating to the latest version of iOS will address the vulnerability.
You can find more information about CVE-2019-8566 on Apple's support page: [https://support.apple.com/HT209599](https://support.apple.com/HT209599)