Product:

Xcode

(Apple)
Repositories https://github.com/apache/httpd
https://github.com/visionmedia/send
#Vulnerabilities 83
Date Id Summary Products Score Patch Annotated
2019-12-18 CVE-2019-8739 A memory corruption issue was addressed with improved state management. This issue is fixed in Xcode 11.0. Processing a maliciously crafted file may lead to arbitrary code execution. Xcode 7.8
2019-12-18 CVE-2019-8800 A memory corruption issue was addressed with improved validation. This issue is fixed in Xcode 11.2. Processing a maliciously crafted file may lead to arbitrary code execution. Xcode 7.8
2019-12-18 CVE-2019-8806 A memory corruption issue was addressed with improved validation. This issue is fixed in Xcode 11.2. Processing a maliciously crafted file may lead to arbitrary code execution. Xcode 7.8
2020-02-12 CVE-2014-9390 Git before 1.8.5.6, 1.9.x before 1.9.5, 2.0.x before 2.0.5, 2.1.x before 2.1.4, and 2.2.x before 2.2.1 on Windows and OS X; Mercurial before 3.2.3 on Windows and OS X; Apple Xcode before 6.2 beta 3; mine all versions before 08-12-2014; libgit2 all versions up to 0.21.2; Egit all versions before 08-12-2014; and JGit all versions before 08-12-2014 allow remote Git servers to execute arbitrary commands via a tree containing a crafted .git/config file with (1) an ignorable Unicode codepoint, (2)... Xcode, Egit, Jgit, Git, Libgit2, Mercurial 9.8
2020-10-27 CVE-2019-8840 An out-of-bounds read was addressed with improved bounds checking. This issue is fixed in Xcode 11.3. Compiling with untrusted sources may lead to arbitrary code execution with user privileges. Xcode 8.8
2019-12-18 CVE-2019-8722 Multiple issues in ld64 in the Xcode toolchains were addressed by updating to version ld64-507.4. This issue is fixed in Xcode 11.0. Compiling code without proper input validation could lead to arbitrary code execution with user privilege. Xcode N/A
2019-12-18 CVE-2019-8721 Multiple issues in ld64 in the Xcode toolchains were addressed by updating to version ld64-507.4. This issue is fixed in Xcode 11.0. Compiling code without proper input validation could lead to arbitrary code execution with user privilege. Xcode N/A
2019-12-18 CVE-2019-8724 Multiple issues in ld64 in the Xcode toolchains were addressed by updating to version ld64-507.4. This issue is fixed in Xcode 11.0. Compiling code without proper input validation could lead to arbitrary code execution with user privilege. Xcode N/A
2019-12-18 CVE-2019-8723 Multiple issues in ld64 in the Xcode toolchains were addressed by updating to version ld64-507.4. This issue is fixed in Xcode 11.0. Compiling code without proper input validation could lead to arbitrary code execution with user privilege. Xcode N/A
2019-04-03 CVE-2018-4357 A memory corruption issue was addressed with improved input validation. This issue affected versions prior to Xcode 10. Xcode 7.8