PT-2015-7471 · Apple · Xcode
Stephen Lardier
·
Publicado
2015-12-11
·
Atualizado
2016-12-07
·
CVE-2015-7056
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Apple Xcode versions prior to 7.2
Description
The issue allows remote attackers to obtain sensitive information in certain circumstances by leveraging the presence of a file matching an ignore pattern, due to the IDE SCM in Apple Xcode not recognizing .gitignore files.
Recommendations
For versions prior to 7.2, update to version 7.2 or later to resolve the issue.
Correção
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Xcode