Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Can someone explain what this means for the end user?


It's a pattern of privilege escalation bugs. If you run untrusted code on your machine, that code can obtain root or alter the kernel, potentially even if it's running as nobody.

There is a relatively long sequence of attempts to band-aid the bug, all of which failed, because Ian Beer found a systemic flaw, not just a single point flaw. So, the other implication for users is a general sense of foreboding.


So Apple still has no real solution to this bug?


The real solution (refactoring how execve creates tasks) was release with 10.12.1 (and updates to prior versions of OS X too).




Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: