PT-2022-26587 · Apple · Xcode+1

Tim Michaud

+1

·

Published

2022-11-01

·

Updated

2023-03-07

·

CVE-2022-42797

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Xcode versions prior to 14.1
Description An injection issue was addressed with improved input validation, which may allow an app to gain root privileges.
Recommendations For versions prior to 14.1, update to Xcode 14.1 to resolve the issue.

Fix

Special Elements Injection

Weakness Enumeration

Related Identifiers

CVE-2022-42797

Affected Products

Apple Macos
Xcode