Apple Releases macOS High Sierra 10.13 Supplemental Update With Fix for APFS Disk Utility Bug and Keychain Vulnerability - MacRumorsOpen MenuShow RoundupsShow Forums menuVisit ForumsOpen Sidebar
Skip to Content

Apple Releases macOS High Sierra 10.13 Supplemental Update With Fix for APFS Disk Utility Bug and Keychain Vulnerability

Apple today released a supplemental update to macOS High Sierra 10.13, the first update to the macOS High Sierra operating system that was released to the public in late September. The macOS High Sierra 10.13 update comes just over one week after the release of macOS High Sierra.

The new version of macOS High Sierra 10.13 is a free update for all customers who have a compatible machine. The update can be downloaded using the Software Update function in the Mac App Store.

macoshighsierra
The supplemental macOS High Sierra 10.13 update addresses a software vulnerability that could expose the passwords of encrypted Apple File System volumes in plain text in Disk Utility.

Apple has released a support document alongside the Supplemental Update that walks users through the process of protecting their data if macOS High Sierra is showing a password instead of a password hint on an encrypted APFS volume.

Steps include installing the new update, creating an encrypted backup of data for the affected volume, erasing the drive, reformatting to APFS, then APFS (Encrypted), and finally restoring the data that was backed up.

A separate security support document says that the update also fixes a vulnerability that could let a hacker steal the usernames and passwords of accounts stored in Keychain using a malicious third-party app.

And finally, according to the release notes accompanying the update, it also improves installer robustness, fixes a cursor graphic bug in Adobe InDesign, and resolves an issue where messages couldn't be deleted from Yahoo accounts in Mail.

macOS High Sierra introduces a new more modern file system designed for flash storage (APFS), Metal 2, Safari improvements that protect user privacy and prevent autoplay videos, and improvements to several apps like Photos, Mail, Notes, and more.

Related Forum: macOS High Sierra

Top Rated Comments

OldSchoolMacGuy Avatar
111 months ago
Someone will complain about having to install updates. They'd rather have Microsoft which would wait to patch a security issue because it's not part of their update release schedule. There were a number complaining of recent iOS updates in this way.
Score: 16 Votes (Like | Disagree)
phillytim Avatar
111 months ago
At least Apple has been responsive, as the APFS vulnerability was just revealed within the past day.
Score: 15 Votes (Like | Disagree)
Amazing Iceman Avatar
111 months ago
That was the fastest fix I've ever seen..!

How about other meaningful updates?
Score: 15 Votes (Like | Disagree)
bwintx Avatar
111 months ago
Excellent. The bug gets publicized this morning, it's fixed by midday (my time). Can't beat a deal like that. I don't care what the haters say.
Score: 14 Votes (Like | Disagree)
jayducharme Avatar
111 months ago
At least Apple has been responsive, as the APFS vulnerability was just revealed within the past day.
I wouldn't be surprised if Apple knew about this bug before it was publicized and already had been working on a fix.
Score: 11 Votes (Like | Disagree)
111 months ago
They also fix the keychain bug, which malicious apps could take advantage of and extract all keychain passwords.
https://support.apple.com/en-us/HT208165
Score: 8 Votes (Like | Disagree)
Related Apple News: Opinion | Entertainment | Iphone | Iphone | South Africa