If you own a Mac all versions of Mac operating systems since 2002 are affected by the recent exploit that was published on New Years Eve. As of writing this article there are no solutions for a fix yet. This expolit affects Mac computers with local priviledge escalation. This means that your computer can be expolited with local access or if a hacker has already set up accessibility on your computer.
What kind of exploit is this?
This expolit affects the IOHIDFamily MacOs kernel driver. This area manages various types of user activities. There is a flaw discovered in the IOHIDFamily code on Macs. There is a document that has been published online that describes how to take advantage of this flaw. The community noticed this exploit on January 1st. New Years day. If you would like to see the docymentation on IOHDeous you can find it here: IOHIDEOUS Documentation
The exploit is easy to use. All you have to do is trigger the code on logout operations. Once a user logs off their computer a hacker can have access to your computer after a user logs off, reboots his machine, or shuts down his computer. There is nothing else the hacker has to do. So far I have not seen an update by Apple yet, but expect an update to come out soon. As far as bug bounty programs go it appears that LPE flaws are not critical. We probably won't be seeing another rushed out late night fix anytime soon like last month.