QID 377735

Date Published: 2023-02-06

QID 377735: Apple Xcode Prior to 14.1 Vulnerabilities (HT213496)

Apple Xcode is an integrated development environment (IDE) for macOS containing a suite of software development tools developed by Apple.

Affected versions:
Apple Xcode versions prior to 14.1

QID Detection Logic (Authenticated)
This checks for vulnerable versions of Apple Xcode under the Apple System Information.

On successful exploitation, an application may be able to execute arbitrary code with kernel privileges.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as High - 6.9 severity.
  • Solution
    Apple Xcode 14.1 has been released to address these security issues. The update can be downloaded from here. For more information please refer to HT213496
    Vendor References

    CVEs related to QID 377735

    Software Advisories
    Advisory ID Software Component Link
    HT213496 URL Logo support.apple.com/en-us/HT213496