NA

CVE-2022-46718

Published: 23/06/2023 Updated: 27/06/2023
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

A logic issue was addressed with improved restrictions. This issue is fixed in iOS 15.7.2 and iPadOS 15.7.2, macOS Ventura 13.1, macOS Big Sur 11.7.2, macOS Monterey 12.6.2. An app may be able to read sensitive location information

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apple macos

apple ipados

apple iphone os

Github Repositories

CVE-2022-46718: an app may be able to read sensitive location information.

CoreParsecLocation tl;dr add an entitlement check to parsecd Overview CoreParsecLocation is a sample application demonstrating how a third-party app can access a user's precise location without a user's consent or permission parsecd/CoreParsec also provides information such as localized search suggestions, knowledge cards, and a temporary user ID Thankfully, I do no