First published: Wed Apr 23 2014(Updated: )
Power Management in Apple OS X 10.9.x through 10.9.2 allows physically proximate attackers to bypass an intended transition into the locked-screen state by touching (1) a key or (2) the trackpad during a lid-close action.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
macOS Yosemite | =10.9 | |
macOS Yosemite | =10.9.1 | |
macOS Yosemite | =10.9.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-1321 is considered a medium-severity vulnerability as it allows local attackers to bypass screen lock.
To fix CVE-2014-1321, upgrade your system to OS X 10.9.3 or later.
CVE-2014-1321 affects users of Apple OS X versions 10.9, 10.9.1, and 10.9.2.
CVE-2014-1321 is associated with physical proximity attacks that exploit the power management feature.
CVE-2014-1321 allows an attacker to prevent the system from entering a locked-screen state.