macOS Tahoe 26.6.1 fixed a pretty major screen-sharing flaw

Macworld

A recent report by the security firm Calif provides details for a security patch that was included in the macOS Tahoe 26.6.1 update released last week. Apple also released macOS 15.7.9 and 14.8.9 updates that provide the same security fix.

While Apple’s release notes state that through the vulnerability, “an attacker on the network may be able to authenticate to Screen Sharing without valid credentials,” Apple doesn’t usually provide details on any found security hole, leaving the explanation to the researchers and others. In this case, the inner workings of the vulnerability were discussed at the Black Hat conference last week.

Screen sharing is a built-in macOS feature that’s quite useful for administering multiple Macs on a network. From one Mac, a user with the proper credentials can log on to another Mac. Screen sharing displays the remote Mac’s desktop as a window on the user’s display.

However, screen sharing had an authentication issue that involved improper state management during authentication. This allowed unauthorized users to try to log on. In its own report, the National Cyber Security in the Netherlands reported that “port 5900 was accessible from the internet.” Port 5900 refers to the TCP port in macOS for screen sharing.

If you are a frequent user of macOS’s screen sharing, it’s important to install the update to patch this vulnerability. Since the update contains only the security fix, it won’t take too long to install, but you will need to restart the Mac.

Macworld has several guides to help, including a guide on whether or not you need antivirus software, a list of Mac viruses, malware, and trojans, and a comparison of Mac security software.

Recent Posts

editors picks

Top Reviews