CVE-2005-2509: Low severity Apple Mac OS X Server vulnerability
Unknown vulnerability in loginwindow in Mac OS X 10.4.2 and earlier, when Fast User Switching is enabled, allows attackers to log into other accounts if they know the passwords to at least two accounts.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2005-2509?
CVE-2005-2509 is classified as a moderate severity vulnerability that can allow unauthorized access to user accounts on affected systems.
How do I fix CVE-2005-2509?
To mitigate CVE-2005-2509, users should disable Fast User Switching or upgrade to a later version of Mac OS X that patches this vulnerability.
What versions of Mac OS X are affected by CVE-2005-2509?
CVE-2005-2509 affects Mac OS X versions up to 10.4.2, including several prior versions such as 10.1 and 10.2.
What types of attacks are possible with CVE-2005-2509?
CVE-2005-2509 allows attackers to switch users to different accounts if they have the passwords of at least two accounts, potentially compromising sensitive information.
Is there a workaround for CVE-2005-2509 if I cannot upgrade?
A temporary workaround for CVE-2005-2509 is to ensure that Fast User Switching is turned off to prevent unauthorized access to accounts.