Skip to main content

Rootpipe exploit still an issue in Mac OS X, security expert finds

Apple iMac 2014 bottom screen
Image used with permission by copyright holder
Patrick Wardle, a former NSA staffer, has revealed that Apple may have botched a patch of a significant vulnerability known as Rootpipe. Security Software Engineer Emil Kvarnhammar claimed in a blog post on April 9 that Apple had originally resolved the issue with the release of OS X 10.10.3. Now, Wardle has discovered that all Mac machines are still prone to attack, according to Forbes.

Apple initially learned of Rootpipe in October 2014, and planned for a fix by January 2015. In short, Rootpipe allows an attacker who has local access to a Mac product to achieve root privileges. This gives him or her full control of the machine without the need for additional authentication.

“I found a novel, yet trivial way for any local user to re-abuse Rootpipe — even on a fully patched OS X 10.10.3 system,” Wardle wrote in his own blog piece, posted on April 18. “In the spirit of responsible disclosure, (at this time), I won’t be providing the technical details of the attack (besides of course to Apple). However, I felt that in the meantime, OS X users should be aware of the risk.”

In an email to Forbes, Wardle went on to say that he was tempted to walk into an Apple store and try to exploit the issue on a display model. In the end, he did not do so, but wants to get the word out about the issue.

The Apple update that addressed the Rootpipe vulnerability claimed that Macs would now have “improved entitlement checking.” When it was released on April 8, the company was widely criticized for only providing a patch for newer editions of its Yosemite operating system.

Apple has been on the hot seat as of late for its security vulnerabilities. German Researcher Stefan Esser made waves with his reporting at the Syscan Conference, highlighting Apple’s iOS vulnerabilities.

Editors' Recommendations

Krystle Vermes
Former Digital Trends Contributor
Krystle Vermes is a professional writer, blogger and podcaster with a background in both online and print journalism. Her…
The MacBook Pro M3 doesn’t have a memory problem — it has a pricing problem
The MacBook Pro open on a table in front of a couch.

Apple just upset everyone, claiming that the 8GB of Unified Memory available in the base MacBook Pro M3 is "probably analogous to 16GB on other systems."

The MacBook Pro M3 has already come under fire for only including 8GB of Unified Memory in its base configuration, which runs $1,600. MacWorld recently ran a story criticizing the 8GB of memory in the MacBook Pro M3, saying, "If 8GB will be a bottleneck for many today, imagine the performance of that non-upgradeable laptop in a few years’ time."

Read more
MacBook Pro M3: Should you choose the M3, M3 Pro, or M3 Max?
The MacBook Pro open on a table.

Apple's next generation of MacBook Pros is finally here, and they arrive touting the highly anticipated M3 chip. Like the previous generation, you have a choice between a 14-inch and 16-inch model, but there are a lot of differences when you start looking at the three versions of the chip that are available: the M3, M3 Pro, and M3 Max.

We're here to run you through all of the configuration options for the MacBook Pro M3, as well as if you should choose the M3, M3 Pro, or M3 Max. Apple currently has the , and they're shipping now.
Pricing

Read more
Apple just dashed our iMac hopes and dreams
The back of a silver iMac in an office.

Apple has confirmed it has no plans to release a 27-inch iMac in the immediate future. The news comes on the same day that reviews for Apple's 24-inch iMac M3 and MacBook Pro M3 went live, with the company urging pro users who had been waiting for a 27-inch iMac update to go with a Mac Studio or Mac Pro instead.

An Apple representative confirmed that a 27-inch iMac with Apple silicon won't be arriving soon to The Verge. Apple last updated the 27-inch iMac in 2020, just a few months before Apple silicon was released to the world. It never saw Apple Silicon, instead being stuck on older Intel chips. Apple discontinued the product in 2021, eventually delisting it the next year.

Read more