This issue was addressed with improvements to the noise injection algorithm. This issue is fixed in visionOS 1.2, macOS Sonoma 14.5, Safari 17.5, iOS 17.5 and iPadOS 17.5. A maliciously crafted webpage may be able to fingerprint the user.
The product does not properly prevent a person's private, personal information from being accessed by actors who either (1) are not explicitly authorized to access the information or (2) do not have the implicit consent of the person about whom the information is collected.
Link | Tags |
---|---|
https://support.apple.com/en-us/HT214101 | vendor advisory |
https://support.apple.com/en-us/HT214106 | vendor advisory |
https://support.apple.com/en-us/HT214108 | vendor advisory |
https://support.apple.com/en-us/HT214103 | vendor advisory |
http://seclists.org/fulldisclosure/2024/Jun/5 | third party advisory mailing list |