Mac OS X security exploit posted


Full Disclosure, a list serve that bills itself as "the only way to ensure that everyone ... have access to the information we need to survive," has posted the details of a recently discovered Mac OS X security exploit for the built-in screen saver built. Here's a quote of that report:

"i don't know the exact amount of characters, only that if you leave a key pressed for 5 minutes or more and then hit the enter key, you crash the screensaver and gain access to the desktop. you can mess the desktop and all around it (network, mail, docs, anything you can imagine).

"i think that this is a huge secure hole and it must be corrected."

"Huge" might be a bit of an overstatement, but this is a problem.

Discussion point: Do you use the built-in security features of OS X?