CVE-2022-32846

A logic issue was addressed with improved state management. This issue is fixed in Apple Music 3.9.10 for Android. An app may be able to access user-sensitive data.
References
Link Resource
https://support.apple.com/en-us/HT213473 Release Notes Vendor Advisory
https://support.apple.com/en-us/HT213473 Release Notes Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:apple:music:3.9.10:*:*:*:*:android:*:*

History

21 Nov 2024, 07:07

Type Values Removed Values Added
Summary
  • (es) Se abordó una cuestión de lógica con una mejor gestión de estado. Este problema se solucionó en Apple Music 3.9.10 para Android. Es posible que una aplicación pueda acceder a datos confidenciales del usuario.
References () https://support.apple.com/en-us/HT213473 - Release Notes, Vendor Advisory () https://support.apple.com/en-us/HT213473 - Release Notes, Vendor Advisory

08 Mar 2023, 14:19

Type Values Removed Values Added
CPE cpe:2.3:a:apple:music:3.9.10:*:*:*:*:android:*:*
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
References (MISC) https://support.apple.com/en-us/HT213473 - (MISC) https://support.apple.com/en-us/HT213473 - Release Notes, Vendor Advisory

27 Feb 2023, 20:25

Type Values Removed Values Added
New CVE

Information

Published : 2023-02-27 20:15

Updated : 2024-11-21 07:07


NVD link : CVE-2022-32846

Mitre link : CVE-2022-32846

CVE.ORG link : CVE-2022-32846


JSON object : View

Products Affected

apple

  • music