An authentication issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.6.5, macOS Monterey 12.3, Security Update 2022-003 Catalina. A local attacker may be able to view the previous logged in user’s desktop from the fast user switching screen.
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mac_os_x | Apple | 10.15 (including) | 10.15.7 (excluding) |
Mac_os_x | Apple | 10.15.7-security_update_2022-001 (including) | 10.15.7-security_update_2022-001 (including) |
Mac_os_x | Apple | 10.15.7-security_update_2022-002 (including) | 10.15.7-security_update_2022-002 (including) |
Macos | Apple | 11.6 (including) | 11.6.5 (excluding) |
Macos | Apple | 12.0 (including) | 12.3 (excluding) |
Macos | Apple | 10.15.7 (including) | 10.15.7 (including) |