CVE-2012-0657

LOW

Description

Quartz Composer in Apple Mac OS X before 10.7.4, when the RSS Visualizer screensaver is enabled, allows physically proximate attackers to bypass screen locking and launch a Safari process via unspecified vectors.

References

http://lists.apple.com/archives/security-announce/2012/May/msg00001.html

http://support.apple.com/kb/HT5281

http://www.securityfocus.com/bid/53445

http://www.securityfocus.com/bid/53473

Details

Source: MITRE

Published: 2012-05-11

Updated: 2012-05-30

Type: CWE-264

Risk Information

CVSS v2.0

Base Score: 2.1

Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Impact Score: 2.9

Exploitability Score: 3.9

Severity: LOW