CVE-2021-1800: Medium severity apple xcode vulnerability
A path handling issue was addressed with improved validation. This issue is fixed in Xcode 12.4. A malicious application may be able to access arbitrary files on the host device while running an app that uses on-demand resources with Xcode.
Other sources
Xcode IDE. A path handling issue was addressed with improved validation.
Credit
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-1800?
CVE-2021-1800 is a vulnerability in Xcode IDE that allows a malicious application to access arbitrary files on the host device.
What is the severity of CVE-2021-1800?
The severity of CVE-2021-1800 is medium with a CVSS score of 5.5.
How does CVE-2021-1800 affect Xcode?
CVE-2021-1800 affects Xcode by allowing a malicious application to access arbitrary files on the host device while running an app that uses on-demand resources.
How do I fix CVE-2021-1800?
CVE-2021-1800 is fixed in Xcode 12.4, so users should update to this version to address the vulnerability.
Where can I find more information about CVE-2021-1800?
More information about CVE-2021-1800 can be found on the Apple support page: https://support.apple.com/en-us/HT212153