Apple Mac firmware 0day EFI rootkit Vulnerability
Apple Mac firmware 0day EFI rootkit Vulnerability
Release date:
Updated on:
Affected Systems:
Apple Mac MacBook Pro Retina
Apple Mac MacBook Pro
Apple Mac MacBook Air
Description:
Mac is a personal consumption-type computer that Apple started with "Macintosh" since 1984, such as iMac, Mac mini, Macbook Air, Macbook Pro, and Mac Pro.
A security vulnerability may exist in EFI firmware updates on computers such as MacBook Pro Retina, MacBook Pro, and MacBook Air. Attackers do not need to physically access the target machine, but can exploit this vulnerability through other remote vectors such as Safari, install the EFI rootkit and update the flash ROM content. This vulnerability occurs because the flash protection mechanism is not locked in sleep mode.
<* Source: Pedro Vila & #231;
Link: http://securityaffairs.co/wordpress/37394/hacking/mac-zero-day-rootkit-infection.html
*>
Suggestion:
Vendor patch:
Apple
-----
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.apple.com/support/downloads/
This article permanently updates the link address: