35
CVE-2019-8502
—CVSS 3.1
3.3 low
EPSS
<1%p54
Published
()
Modified
Description
An API issue existed in the handling of dictation requests. This issue was addressed with improved validation. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. A malicious application may be able to initiate a Dictation request without user authorization.
- Vendors
- apple
- Products
- iphone os, mac os x, tvos, watchos
- Weakness
- CWE-20
- Vector
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N