logo

Apple fixes bug that let VoiceOver shout your passwords

ID: be427c2e-da41-5b19-bc1b-1e5132b7c2a0

STIX ID: report--be427c2e-da41-5b19-bc1b-1e5132b7c2a0

Feed Name: The Register (Security)

Threat Score
45/100

Date Published: 2024-10-04

Date Updated: 2026-04-26

Author: Connor Jones

...
...

Apple released iOS and iPadOS 18.0.1 to address two vulnerabilities: CVE-2024-44204, a logic-validation flaw that could allow saved passwords to be read aloud via the VoiceOver accessibility feature, and CVE-2024-44207, an audio-recording issue on iPhone 16 that may capture audio before the microphone indicator appears; Apple fixed both by improving validation and checks and urges affected users to update.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.