Out-of-Bounds Read Vulnerability in Xcode by Apple
CVE-2022-22602

7.8HIGH

Key Information:

Vendor
Apple
Status
Vendor
CVE Published:
18 March 2022

Summary

An out-of-bounds read vulnerability in Xcode can be exploited when a user opens a specially crafted file. This can lead to unexpected application termination or allow for arbitrary code execution. Apple has addressed this issue in Xcode 13.3 by implementing improved bounds checking to enhance security and protect users from potential attacks.

Affected Version(s)

Xcode < 13.3

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.