Apple Patches Mac OS Security Bug

PHOTO: APPLE

Apple Patches Mac OS Security Bug

Apple has patched a macOS High Sierra flaw that would allow intruders to gain full administrator access on your system.

Apple has patched a macOS High Sierra flaw that would allow intruders to gain full administrator access on your system. Security Update 2017-001 should be installed by Mac users running High Sierra as soon as possible.

The company released Security Update 2017-001 Wednesday to fix a bug that would allow people to gain control over a Mac simply by putting “root” as the username and hitting the Return key a few times.

The bug was made public Tuesday on Twitter by Turkish software designer Lemi Orhan Ergin. Ergin has been criticized for not following responsible guidelines by notifying Apple of the security flaw with reasonable time to fix it before going public.

Luckily, the threat of an attack to your system’s security using this flaw is fairly low in practice. Anyone wanting to exploit the bug would have to have physical access to your Mac, and you could also avoid it by following instructions issued by Apple to set up a root password.

In a statement issued by Apple, the company apologized for the error and said that starting late Wednesday the patch would be “automatically installed on all systems running the latest version (10.13.1) of macOS High Sierra.”

Some security experts remain critical of Apple’s security.

“Recent years have not been good for anyone relying on OS X for security,” Tripwire computer security researcher Craig Young said. “Apple needs to seriously re-evaluate how they perform quality assurance testing, as there is really no excuse for releasing macOS with some of these blatant security failings.”

About the Author

Jessica Davis is the Associate Content Editor for 1105 Media.

If you like what you see, get more delivered to your inbox weekly.
Click here to subscribe to our free premium content.

comments powered by Disqus

Digital Edition

  • Security Today Magazine - December 2017

    December 2017

    Featuring:

    • The Direction of VMS Technology
    • The Formula for Data Security
    • What's Trending for 2018
    • The New Era
    • Crisis on the Sabbath Day

    View This Issue

  • Environmental Protection
  • Occupational Health & Safety
  • Infrastructure Solutions Group
  • School Planning & Managmenet
  • College Planning & Management
  • Campus Security & Life Safety