CVE-2013-5187: Low severity Apple iOS and macOS vulnerability
The Screen Lock implementation in Apple Mac OS X before 10.9 does not immediately accept Keychain Status menu Lock Screen commands, and instead incorrectly relies on a certain timeout setting, which allows physically proximate attackers to obtain sensitive information by reading a screen that should have transitioned into the locked state.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5187?
CVE-2013-5187 is classified as a moderate severity vulnerability due to its potential to expose sensitive information.
How do I fix CVE-2013-5187?
To fix CVE-2013-5187, update your Mac OS X to version 10.9 or later where the vulnerability has been addressed.
Who is affected by CVE-2013-5187?
CVE-2013-5187 affects users of Mac OS X versions prior to 10.9, specifically versions 10.8.5 and earlier.
What kind of attacks can exploit CVE-2013-5187?
CVE-2013-5187 can be exploited by physically proximate attackers who can view a screen that should be locked.
Is CVE-2013-5187 still a concern for users today?
CVE-2013-5187 is less of a concern today for users who have updated to supported versions of macOS.