vulnerability

OS X update for LoginWindow (CVE-2023-42935)

Severity
5
CVSS
(AV:L/AC:L/Au:S/C:C/I:N/A:N)
Published
Jan 23, 2024
Added
Jan 23, 2024
Modified
Mar 27, 2026

Description

An authentication issue was addressed with improved state management. This issue is fixed in macOS Ventura 13.6.4. A local attacker may be able to view the previous logged in user’s desktop from the fast user switching screen.

Solutions

apple-osx-upgrade-13_6_4apple-osx-upgrade-14_1
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.