PT-2020-11321 · Apple · Xcode

Pan Zhenpeng

+1

·

Published

2020-10-27

·

Updated

2020-11-02

·

CVE-2019-8840

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Xcode versions prior to 11.3
Description An out-of-bounds read issue was addressed with improved bounds checking. Compiling with untrusted sources may lead to arbitrary code execution with user privileges.
Recommendations For versions prior to 11.3, update to Xcode 11.3 to resolve the issue. As a temporary workaround, consider avoiding compilation with untrusted sources until the update is applied.

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-8840

Affected Products

Xcode