Apple macOS CVE-2017-13872 Authentication Bypass Vulnerability
BID:101981
Info
Apple macOS CVE-2017-13872 Authentication Bypass Vulnerability
| Bugtraq ID: | 101981 |
| Class: | Design Error |
| CVE: |
CVE-2017-13872 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 29 2017 12:00AM |
| Updated: | Dec 19 2017 10:37PM |
| Credit: | chethan177 |
| Vulnerable: |
Apple macOS 10.13.1 |
| Not Vulnerable: | |
Discussion
Apple macOS CVE-2017-13872 Authentication Bypass Vulnerability
Apple macOS is prone to an authentication-bypass vulnerability.
An attacker can exploit this issue to bypass authentication mechanism and perform unauthorized actions. This may lead to further attacks.
Apple macOS version 10.13.1 is vulnerable.
Apple macOS is prone to an authentication-bypass vulnerability.
An attacker can exploit this issue to bypass authentication mechanism and perform unauthorized actions. This may lead to further attacks.
Apple macOS version 10.13.1 is vulnerable.
Exploit / POC
Apple macOS CVE-2017-13872 Authentication Bypass Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Apple macOS CVE-2017-13872 Authentication Bypass Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Apple macOS CVE-2017-13872 Authentication Bypass Vulnerability
References:
References:
- Apple Home Page (Apple)
- Security Update 2017-001 (Apple)
- Apple MacOS High Sierra root authentication bypass (cert)
- Security Update 2017-001 (Apple)