MacOS X Third Party Application Screen Effects Password Protection Bypass Vulnerability
BID:8293
Info
MacOS X Third Party Application Screen Effects Password Protection Bypass Vulnerability
| Bugtraq ID: | 8293 |
| Class: | Design Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Jul 28 2003 12:00AM |
| Updated: | Jul 28 2003 12:00AM |
| Credit: | Discovery of this vulnerability has been credited to Patrick Haruksteiner <[email protected]>. |
| Vulnerable: |
Apple Mac OS X Server 10.2.6 Apple Mac OS X Server 10.2.5 Apple Mac OS X Server 10.2.4 Apple Mac OS X Server 10.2.3 Apple Mac OS X Server 10.2.2 Apple Mac OS X Server 10.2.1 Apple Mac OS X Server 10.2 Apple Mac OS X 10.2.6 Apple Mac OS X 10.2.5 Apple Mac OS X 10.2.4 Apple Mac OS X 10.2.3 Apple Mac OS X 10.2.2 Apple Mac OS X 10.2.1 Apple Mac OS X 10.2 |
| Not Vulnerable: | |
Discussion
MacOS X Third Party Application Screen Effects Password Protection Bypass Vulnerability
Screen Effects has been reported prone to a vulnerability where third party applications may allow a user to kill the Screen Effects process and thereby subvert desktop password protection.
Screen Effects has been reported prone to a vulnerability where third party applications may allow a user to kill the Screen Effects process and thereby subvert desktop password protection.
Exploit / POC
MacOS X Third Party Application Screen Effects Password Protection Bypass Vulnerability
There is no exploit required.
There is no exploit required.
References
MacOS X Third Party Application Screen Effects Password Protection Bypass Vulnerability
References:
References:
- escapepod Homepage (Ambrosia Software, Inc.)
- Mac OS X Homepage (Apple)