CVE-2014-1321: Low severity Apple iOS and macOS vulnerability
Published Apr 23, 2014
·Updated
Power Management in Apple OS X 10.9.x through 10.9.2 allows physically proximate attackers to bypass an intended transition into the locked-screen state by touching (1) a key or (2) the trackpad during a lid-close action.
Affected Software
3 affected components
Apple iOS and macOS=10.9
Apple iOS and macOS=10.9.1
Apple iOS and macOS=10.9.2
Event History
Apr 23, 2014
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Data Sourced
via NVD·11:52 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-1321?
CVE-2014-1321 is considered a medium-severity vulnerability as it allows local attackers to bypass screen lock.
2
How do I fix CVE-2014-1321?
To fix CVE-2014-1321, upgrade your system to OS X 10.9.3 or later.
3
Who is affected by CVE-2014-1321?
CVE-2014-1321 affects users of Apple OS X versions 10.9, 10.9.1, and 10.9.2.
4
What type of attack is associated with CVE-2014-1321?
CVE-2014-1321 is associated with physical proximity attacks that exploit the power management feature.
5
What does CVE-2014-1321 allow an attacker to do?
CVE-2014-1321 allows an attacker to prevent the system from entering a locked-screen state.