State Issues in Apple iOS and iPadOS - CVE-2022-32855

 

State Issues in Apple iOS and iPadOS - CVE-2022-32855

Published: July 21, 2022


Vulnerability identifier: #VU65629
CSH Severity: Low
CVSS v4: 2.4 [CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2022-32855
CWE-ID: CWE-371
Exploitation vector: Local access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows an attacker to gain access to sensitive information.

The vulnerability exists in the Home feature. An attacker with physical access to device can view restricted content from the lock screen.


Affected software

Apple iOS
iPadOS

How to mitigate CVE-2022-32855

Install updates from vendor's website.

Apple iOS - update to 15.6 19G71
iPadOS - update to 15.6 19G71

External References

Related Security Bulletins