CVE-2024-23289
Description
A lock screen issue in Apple OSes allows physical access users to retrieve private calendar data via Siri, patched in recent updates.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
A lock screen issue in Apple OSes allows physical access users to retrieve private calendar data via Siri, patched in recent updates.
Vulnerability
Overview CVE-2024-23289 is a lock screen issue in Apple iOS, iPadOS, macOS, and watchOS that could allow a person with physical access to a device to use Siri to access private calendar information. The vulnerability was addressed through improved state management on the lock screen.
Exploitation
Exploitation requires physical access to the device. With Siri accessible from the lock screen, an attacker could query calendar information without authentication, bypassing the intended lock screen restrictions.
Impact
Successful exploitation leads to unauthorized disclosure of private calendar data, potentially exposing sensitive scheduled events and personal information.
Mitigation
The issue is fixed in iOS 16.7.6 and iPadOS 16.7.6, iOS 17.4 and iPadOS 17.4, macOS Sonoma 14.4, and watchOS 10.4 [1][4]. Users are advised to update their devices to the latest available versions.
AI Insight generated on May 20, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
7cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:apple:ipados:*:*:*:*:*:*:*:*range: <16.7.6
- (no CPE)
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
14- support.apple.com/en-us/HT214081nvdVendor Advisory
- support.apple.com/en-us/HT214082nvdVendor Advisory
- support.apple.com/en-us/HT214084nvdVendor Advisory
- support.apple.com/en-us/HT214088nvdVendor Advisory
- seclists.org/fulldisclosure/2024/Mar/21nvdMailing List
- seclists.org/fulldisclosure/2024/Mar/24nvdMailing List
- support.apple.com/en-us/120880nvd
- support.apple.com/en-us/120881nvd
- support.apple.com/en-us/120893nvd
- support.apple.com/en-us/120895nvd
- support.apple.com/kb/HT214081nvd
- support.apple.com/kb/HT214082nvd
- support.apple.com/kb/HT214084nvd
- support.apple.com/kb/HT214088nvd
News mentions
0No linked articles in our index yet.