The issue was addressed with improved checks. This issue is fixed in macOS Sonoma 14.5, watchOS 10.5, iOS 17.5 and iPadOS 17.5, iOS 16.7.8 and iPadOS 16.7.8. A maliciously crafted email may be able to initiate FaceTime calls without user authorization.
CVE ID: CVE-2024-23282
Vendor: Apple
Product: iOS and iPadOS
EPSS Score: 0.05% (probability of being exploited)
EPSS Percentile: 25.01% (scored less or equal to compared to others)
EPSS Date: 2025-03-14 (when was this score calculated)