First published: Sat Oct 18 2014(Updated: )
Dock in Apple OS X before 10.10 does not properly manage the screen-lock state, which allows physically proximate attackers to view windows by leveraging an unattended workstation.
Credit: product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mac OS X | <=10.9.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-4431 is considered a medium severity vulnerability due to its potential for unauthorized access to sensitive information.
To fix CVE-2014-4431, upgrade your system to Apple OS X 10.10 or later, which addresses the screen lock state issue.
CVE-2014-4431 affects users of Apple Mac OS X versions prior to 10.10, specifically versions up to 10.9.5.
CVE-2014-4431 enables physically proximate attackers to view the contents of windows by exploiting an unattended workstation.
The exploit mechanism of CVE-2014-4431 relies on the lack of proper management of the screen-lock state in earlier versions of Apple OS X.