First published: Fri Mar 15 2013(Updated: )
Login Window in Apple Mac OS X before 10.8.3 does not prevent application launching with the VoiceOver feature, which allows physically proximate attackers to bypass authentication and make arbitrary System Preferences changes via unspecified use of the keyboard.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | =10.8.0 | |
macOS Yosemite | =10.8.1 | |
macOS Yosemite | =10.8.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-0969 is classified as a moderate severity vulnerability.
To fix CVE-2013-0969, users should update their Mac OS X to version 10.8.3 or later.
CVE-2013-0969 affects Mac OS X versions 10.8.0, 10.8.1, and 10.8.2.
CVE-2013-0969 allows physically proximate attackers to bypass authentication and change system preferences.
The VoiceOver feature in Mac OS X prior to 10.8.3 is exploited in CVE-2013-0969.