Multiple issues in ld64 in the Xcode toolchains were addressed by updating to version ld64-507.4. This issue is fixed in Xcode 11.0. Compiling code without proper input validation could lead to arbitrary code execution with user privilege.
References
Link | Resource |
---|---|
https://support.apple.com/HT210609 | Vendor Advisory |
Configurations
Information
Published : 2019-12-18 10:15
Updated : 2019-12-23 11:00
NVD link : CVE-2019-8722
Mitre link : CVE-2019-8722
JSON object : View
CWE
CWE-20
Improper Input Validation
Products Affected
apple
- xcode