First published: Mon Sep 12 2022(Updated: )
This issue was addressed with improved entitlements. This issue is fixed in iOS 16, watchOS 9. An app may be able to read a persistent device identifier.
Credit: Guilherme Rambo Best Buddy AppsGuilherme Rambo Best Buddy Apps product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iPhone OS | <16.0 | |
Apple watchOS | <9.0 | |
Apple watchOS | <9 | 9 |
Apple iOS | <16 | 16 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2022-32835 is a vulnerability found in the Watch app for Apple iOS and watchOS.
The severity of CVE-2022-32835 is not specified in the provided information.
CVE-2022-32835 was addressed with improved entitlements.
CVE-2022-32835 affects Apple iOS versions up to exclusive version 16 and Apple watchOS versions up to exclusive version 9.
More information about CVE-2022-32835 can be found on the following Apple support pages: [Link 1](https://support.apple.com/en-us/HT213446), [Link 2](https://support.apple.com/en-us/HT213486).