First published: Mon May 16 2022(Updated: )
An authorization issue was addressed with improved state management. This issue is fixed in iOS 15.5 and iPadOS 15.5. A person with physical access to an iOS device may be able to access photos from the lock screen.
Credit: Salman Syed @slmnsd551 product-security@apple.com product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
<15.5 | 15.5 | |
<15.5 | 15.5 | |
Apple iPadOS | <15.5 | |
Apple iPhone OS | <15.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID is CVE-2022-26703.
The severity of CVE-2022-26703 is low with a severity value of 2.4.
CVE-2022-26703 is an authorization issue that was addressed with improved state management. It allows a person with physical access to an iOS device to potentially access photos from the lock screen.
CVE-2022-26703 affects Apple iOS and iPadOS versions up to, but not including, 15.5.
CVE-2022-26703 is fixed in iOS 15.5 and iPadOS 15.5. You should ensure that you have updated your device to the latest available software version.