First published: Thu Mar 29 2018(Updated: )
Local Authentication. There was an issue with the handling of smartcard PINs. This issue was addressed with additional logic.
Credit: David Fuhrmann product-security@apple.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apple Mac OS X | >=10.13.0<10.13.4 | |
Apple macOS High Sierra | <10.13.4 | 10.13.4 |
Apple Sierra | ||
Apple El Capitan |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2018-4179 is a vulnerability in macOS High Sierra that involves the handling of smartcard PINs.
CVE-2018-4179 can allow an attacker to bypass local authentication and gain unauthorized access to a Mac system.
CVE-2018-4179 has a severity score of 5.5, which is considered medium.
CVE-2018-4179 affects macOS High Sierra versions up to and including 10.13.4.
To fix CVE-2018-4179, you should update your macOS High Sierra to version 10.13.5 or later, as it includes the necessary fixes.