QID 376205
QID 376205: Apple Xcode Prior to 13.2.1 Log4j Vulnerability
Apple Xcode is an integrated development environment (IDE) for macOS containing a suite of software development tools developed by Apple.
Affected Versions:
Apple Xcode all versions prior to 13
Note: Prior to 13.2.1 is only available for: macOS Monterey 12.1 and later
QID Detection Logic (Authenticated): This checks for vulnerable versions of Apple Xcode under the Apple System Information.
Successful exploitation of this vulnerability could lead to remote code execution (RCE) on the target.
Solution
Xcode 13.2.1 and later
Download XCode from here
For more information please refer to xcode-13_2_1
Vendor References
- xcode-13_2_1-release-notes -
developer.apple.com/documentation/xcode-release-notes/xcode-13_2_1-release-notes
CVEs related to QID 376205
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| xcode-13_2_1-release-notes |
|