Sudo Bug to Affect macOS Big Sur as it Grants Root Access to Attackers

Sudo Bug to Affect macOS Big Sur as it Grants Root Access to Attackers

3 years ago
Anonymous $K6XgmDN5_o

https://wccftech.com/sudo-bug-to-affect-macos-big-sur-as-it-grants-root-access-to-attackers/

With every new build that Apple releases, we always hear that it composes of certain security fixes and performance improvements. While vulnerabilities are not new to any software, a decade-old vulnerability has now been discovered which could allow local users to gain root access. The root access is given on Unix-based systems which include macOS Big Sur. Let's dive in to see some more details on the sudo bug that can grant access to an attacker for root access on macOS Big Sur.

The new issues eas raised by security researchers in January of this year in which it was disclosed that a vulnerability has been discovered which can affect Unix-based systems such as macOS Big Sur (via ZDnet). The vulnerability is identified as "CVE-2021-3156" by the Qualys Security Team. It affects a program called sudo that allows users to run commands with the security privileges of a user such as an administrator. The bug allows root access by triggering "heap overflow" in sudo that alters the privileges of the user. What this does is not so simple - it grants an attacker root access to the entire system.

Sudo Bug to Affect macOS Big Sur as it Grants Root Access to Attackers

Feb 3, 2021, 7:46pm UTC
https://wccftech.com/sudo-bug-to-affect-macos-big-sur-as-it-grants-root-access-to-attackers/ > With every new build that Apple releases, we always hear that it composes of certain security fixes and performance improvements. While vulnerabilities are not new to any software, a decade-old vulnerability has now been discovered which could allow local users to gain root access. The root access is given on Unix-based systems which include macOS Big Sur. Let's dive in to see some more details on the sudo bug that can grant access to an attacker for root access on macOS Big Sur. > The new issues eas raised by security researchers in January of this year in which it was disclosed that a vulnerability has been discovered which can affect Unix-based systems such as macOS Big Sur (via ZDnet). The vulnerability is identified as "CVE-2021-3156" by the Qualys Security Team. It affects a program called sudo that allows users to run commands with the security privileges of a user such as an administrator. The bug allows root access by triggering "heap overflow" in sudo that alters the privileges of the user. What this does is not so simple - it grants an attacker root access to the entire system.