macOS Big Sur 11.2.1 Fixes Root Access Sudo Bug - MacRumors
Skip to Content

macOS Big Sur 11.2.1 Fixes Root Access Sudo Bug

The macOS Big Sur 11.2.1 update that Apple released today fixes a sudo security vulnerability that could allow an attacker to gain root access to a Mac.

sudo bug macos
According to an Apple security support document, the bug, CVE-2021-3156, was addressed in the update by updating to sudo version 1.9.5p2. Apple has also fixed the bug in Supplemental Updates made available for macOS Catalina 10.15.7 and macOS Mojave 10.14.6.

The updates also include fixes for two bugs that could allow an app to execute arbitrary code with kernel privileges.

Discovered last week, the vulnerability triggers a "heap overflow" in sudo that changes the current user's privileges to enable root-level access, giving an attacker access to the entire system.

Popular Stories

All Screen iPhone 2030 Feature Sans Text

iPhone 18 Pro: Nine Reasons Not to Upgrade This Year

Monday September 7, 2026 5:01 am PDT by
Apple is set to unveil new iPhone 18 Pro and iPhone 18 Pro Max models on Wednesday, September 9, and the devices are expected to feature a design that's largely similar to the iPhone 17 Pro models, with a peppering of enhancements inside. Major changes are not expected until next year, when Apple is expected to introduce a radically redesigned 20th-anniversary iPhone. If you're thinking of...
apple watch series 12

Leak Hints at Four New Features for Apple Watch Series 12 and Ultra 4

Monday September 7, 2026 8:57 am PDT by
Ahead of the announcement of the Apple Watch Series 12 and Ultra 4 later this week, code in the watchOS 27 and iOS 27 betas points to a series of new features for the product line. The information comes from a new post from MacRumors forums member "pdfu." The findings include: New "Readiness" app: An all-new separate Watch app referred to in code as "Readiness," distinct from the...
iPhone 18 Pro Dark Cherry Feature

iPhone 18 Pro Reportedly Starts With 256GB of Storage

Thursday September 3, 2026 9:22 am PDT by
While the iPhone 17 Pro has double the base storage compared to the iPhone 16 Pro, there will apparently be no further increase this year. Taiwanese research firm TrendForce today again reported that the iPhone 18 Pro models will start with 256GB of storage, like the iPhone 17 Pro models. Minimum storage capacities by model:iPhone 16 Pro: 128GB iPhone 17 Pro: 256GB iPhone 18 Pro...

Top Rated Comments

73 months ago

Is Apple the first? Did other Unix and Linux push out the update too?
Most major Linux distros have already fixed it.

Examples:
https://ubuntu.com/security/CVE-2021-3156
https://access.redhat.com/security/cve/cve-2021-3156
https://www.suse.com/security/cve/CVE-2021-3156/
https://bodhi.fedoraproject.org/updates/FEDORA-2021-2cb63d912a
Score: 6 Votes (Like | Disagree)
luvbug Avatar
73 months ago
Thank you! Much more than a charging bug, for sure.
Score: 6 Votes (Like | Disagree)
73 months ago

Now if it could just come standard with allowing us to use TouchID instead of typing our password.
You know that you can enable this feature. Unfortunately, it has to be re-enabled after each update.

https://derflounder.wordpress.com/2017/11/17/enabling-touch-id-authorization-for-sudo-on-macos-high-sierra/
Score: 5 Votes (Like | Disagree)
ruka.snow Avatar
73 months ago
Fantastic. Unlikely to affect me but still good to have the furniture nailed down.
Score: 4 Votes (Like | Disagree)
73 months ago

Reminds me of High Sierra. Waiting for the login “root” user access now. :p
I admit I thought of that, too. However, "sudo" is a utility found throughout unix/Linux systems. This was therefore not an "Apple" bug, but rather an update that had to come from upstream :-)
Score: 3 Votes (Like | Disagree)
Rafterman Avatar
73 months ago
Thanks Apple for yet another reboot. Get it right the first time.
Score: 2 Votes (Like | Disagree)