CVE-2017-13889: Apple Mac OS X

Critical severity, CVSS 9.8. EPSS: 1.1% chance of exploitation in the next 30 days.

In macOS High Sierra before 10.13.3, Security Update 2018-001 Sierra, and Security Update 2018-001 El Capitan, a logic error existed in the validation of credentials. This was addressed with improved credential validation.

Affected products

  • Apple Mac OS X: from 10.13.0, before 10.13.3 (fixed in 10.13.3)

Published 2019-01-11. Last modified 2026-06-17.