ZeroHour

CVE-2019-8502

CVSS 3.1
3.3 low
EPSS
<1%p54
Published
()
Modified
Description

An API issue existed in the handling of dictation requests. This issue was addressed with improved validation. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. A malicious application may be able to initiate a Dictation request without user authorization.

Vendors
apple
Products
iphone os, mac os x, tvos, watchos
Weakness
CWE-20
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

In the news