The CoreProcesses component in Apple Mac OS X 10.7 before 10.7.2 does not prevent a system window from receiving keystrokes in the locked-screen state, which might allow physically proximate attackers to bypass intended access restrictions by typing into this window.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: apple

Published: 2011-10-14T10:00:00

Updated: 2012-01-14T10:00:00

Reserved: 2010-12-23T00:00:00


Link: CVE-2011-0260

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2011-10-14T10:55:08.230

Modified: 2012-01-14T03:51:31.040


Link: CVE-2011-0260

JSON object: View

cve-icon Redhat Information

No data.

CWE