CVE-2023-5920: Lack Of Secure Keyboard Entry Protection in MacOS Desktop
Published Nov 2, 2023
·Updated
Mattermost Desktop for MacOS fails to utilize the secure keyboard input functionality provided by macOS, allowing for other processes to read the keyboard input.
Affected Software
2 affected components
All of the following
Mattermost Mattermost Desktop<5.5.1
macOS
Remediation
Information
Update Mattermost Desktop to versions 5.5.1 or higher.
Event History
Nov 2, 2023
CVE Published
via MITRE·08:34 AM
Data Sourced
via MITRE·08:34 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·09:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-5920?
CVE-2023-5920 is a vulnerability that affects Mattermost Desktop for MacOS, allowing other processes to read keyboard input due to the lack of secure keyboard entry protection.
2
How does CVE-2023-5920 impact MacOS users?
CVE-2023-5920 allows other processes on MacOS to read the keyboard input, potentially compromising sensitive information.
3
What software versions are affected by CVE-2023-5920?
Mattermost Desktop versions up to and excluding 5.5.1 are affected by CVE-2023-5920.
4
Is Apple MacOS vulnerable to CVE-2023-5920?
No, Apple MacOS is not vulnerable to CVE-2023-5920.
5
How can I mitigate the risk of CVE-2023-5920?
To mitigate the risk of CVE-2023-5920, users should update to the latest version of Mattermost Desktop.