E-Ink News Daily

Back to list

Apple Screen Sharing Pre-Auth RCE

Critical pre-authentication remote code execution vulnerability in Apple's Screen Sharing daemon allows unauthenticated attackers to gain root access on macOS systems with Screen Sharing enabled. The flaw stems from improper error handling in SRP frame validation, bypassing authentication entirely. Fixed in macOS 26.6.

Background

Apple Screen Sharing is a built-in macOS feature providing VNC-based remote desktop access, commonly enabled in both personal and enterprise environments.

Source
Lobsters
Published
Aug 2, 2026 at 03:39 AM
Score
9.0 / 10