CVE-2024-54485

The issue was addressed by adding additional logic. This issue is fixed in iPadOS 17.7.3, iOS 18.2 and iPadOS 18.2. An attacker with physical access to an iOS device may be able to view notification content from the lock screen.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

History

13 Dec 2024, 19:15

Type Values Removed Values Added
CWE CWE-922

13 Dec 2024, 18:25

Type Values Removed Values Added
First Time Apple
Apple ipados
Apple iphone Os
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 2.4
Summary
  • (es) El problema se solucionó agregando lógica adicional. Este problema se solucionó en iPadOS 17.7.3, iOS 18.2 y iPadOS 18.2. Un atacante con acceso físico a un dispositivo iOS podría ver el contenido de las notificaciones desde la pantalla de bloqueo.
References () https://support.apple.com/en-us/121837 - () https://support.apple.com/en-us/121837 - Vendor Advisory
References () https://support.apple.com/en-us/121838 - () https://support.apple.com/en-us/121838 - Vendor Advisory
CPE cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

12 Dec 2024, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-12 02:15

Updated : 2024-12-13 19:15


NVD link : CVE-2024-54485

Mitre link : CVE-2024-54485

CVE.ORG link : CVE-2024-54485


JSON object : View

Products Affected

apple

  • ipados
  • iphone_os
CWE
NVD-CWE-noinfo CWE-922

Insecure Storage of Sensitive Information