Vulnerabilities > Apple > Xcode > 2.4.0
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2020-01-09 | CVE-2019-20372 | HTTP Request Smuggling vulnerability in multiple products NGINX before 1.17.7, with certain error_page configurations, allows HTTP request smuggling, as demonstrated by the ability of an attacker to read unauthorized web pages in environments where NGINX is being fronted by a load balancer. | 5.3 |
2019-12-18 | CVE-2019-8806 | Out-of-bounds Write vulnerability in Apple Xcode A memory corruption issue was addressed with improved validation. | 7.8 |
2019-12-18 | CVE-2019-8800 | Out-of-bounds Write vulnerability in Apple Xcode A memory corruption issue was addressed with improved validation. | 7.8 |
2019-12-18 | CVE-2019-8739 | Out-of-bounds Write vulnerability in Apple Xcode A memory corruption issue was addressed with improved state management. | 7.8 |
2019-12-18 | CVE-2019-8738 | Out-of-bounds Write vulnerability in Apple Xcode A memory corruption issue was addressed with improved state management. | 7.8 |
2019-12-18 | CVE-2019-8724 | Improper Input Validation vulnerability in Apple Xcode Multiple issues in ld64 in the Xcode toolchains were addressed by updating to version ld64-507.4. | 8.8 |
2019-12-18 | CVE-2019-8723 | Improper Input Validation vulnerability in Apple Xcode Multiple issues in ld64 in the Xcode toolchains were addressed by updating to version ld64-507.4. | 8.8 |
2019-12-18 | CVE-2019-8722 | Improper Input Validation vulnerability in Apple Xcode Multiple issues in ld64 in the Xcode toolchains were addressed by updating to version ld64-507.4. | 8.8 |
2019-12-18 | CVE-2019-8721 | Improper Input Validation vulnerability in Apple Xcode Multiple issues in ld64 in the Xcode toolchains were addressed by updating to version ld64-507.4. | 8.8 |
2019-07-29 | CVE-2019-14379 | SubTypeValidator.java in FasterXML jackson-databind before 2.9.9.2 mishandles default typing when ehcache is used (because of net.sf.ehcache.transaction.manager.DefaultTransactionManagerLookup), leading to remote code execution. | 9.8 |