CFPreferences in Apple OS X before 10.10 does not properly enforce the "require password after sleep or screen saver begins" setting, which makes it easier for physically proximate attackers to obtain access by leveraging an unattended workstation.
https://support.apple.com/kb/HT6535
https://exchange.xforce.ibmcloud.com/vulnerabilities/97640
http://www.securitytracker.com/id/1031063
http://www.securityfocus.com/bid/70630
http://archives.neohapsis.com/archives/bugtraq/2014-10/0101.html