CVE-2024-44139

The issue was addressed with improved checks. This issue is fixed in iOS 18 and iPadOS 18. An attacker with physical access may be able to access contacts from the lock screen.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*

History

04 Nov 2025, 17:16

Type Values Removed Values Added
References
  • () http://seclists.org/fulldisclosure/2024/Sep/32 -

20 Mar 2025, 14:15

Type Values Removed Values Added
CWE CWE-200

24 Sep 2024, 18:30

Type Values Removed Values Added
CWE NVD-CWE-noinfo
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 2.4
CPE cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*
cpe:2.3:o:apple:ipad_os:*:*:*:*:*:*:*:*
First Time Apple iphone Os
Apple
Apple ipad Os
References () https://support.apple.com/en-us/121250 - () https://support.apple.com/en-us/121250 - Vendor Advisory

20 Sep 2024, 12:31

Type Values Removed Values Added
Summary
  • (es) El problema se solucionó con comprobaciones mejoradas. Este problema se solucionó en iOS 18 y iPadOS 18. Un atacante con acceso físico podría acceder a los contactos desde la pantalla de bloqueo.

17 Sep 2024, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-09-17 00:15

Updated : 2025-11-04 17:16


NVD link : CVE-2024-44139

Mitre link : CVE-2024-44139

CVE.ORG link : CVE-2024-44139


JSON object : View

Products Affected

apple

  • iphone_os
  • ipad_os
CWE
NVD-CWE-noinfo CWE-200

Exposure of Sensitive Information to an Unauthorized Actor