The issue was addressed with improved UI handling. This issue is fixed in iOS 12.4, watchOS 5.3. A user may inadvertently complete an in-app purchase while on the lock screen.
References
Link | Resource |
---|---|
https://support.apple.com/HT210346 | Vendor Advisory |
https://support.apple.com/HT210353 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2019-12-18 10:15
Updated : 2019-12-20 11:28
NVD link : CVE-2019-8682
Mitre link : CVE-2019-8682
JSON object : View
CWE
CWE-306
Missing Authentication for Critical Function
Products Affected
apple
- watchos
- iphone_os