The Security - Keychain component in Apple OS X prior to 10.9.4 does not properly implement keystroke observers, which allows physically proximate malicious users to bypass the screen-lock protection mechanism, and enter characters into an arbitrary window under the lock window, via keyboard input.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
apple mac os x 10.9.3 |
||
apple mac os x 10.9.1 |
||
apple mac os x 10.9 |
||
apple mac os x 10.9.2 |