Home / mailings APPLE-SA-2021-01-26-4 Xcode 12.4
Posted on 26 January 2021
Apple Security-announceAPPLE-SA-2021-01-26-4 Xcode 12.4
Xcode 12.4 addresses the following issues. Information about the
security content is also available at
https://support.apple.com/HT212153.
Xcode IDE
Available for: macOS Catalina 10.15.4 and later
Impact: A malicious application may be able to access
arbitrary files on the host device while running an app
that uses on-demand resources with Xcode
Description: A path handling issue was addressed with
improved validation.
CVE-2021-1800: Theodore Dubois (@tbodt)
Installation note:
Xcode 12.4 may be obtained from:
https://developer.apple.com/xcode/downloads/
To check that the Xcode has been updated:
* Select Xcode in the menu bar
* Select About Xcode
* The version after applying this update will be "Xcode 12.4".
This message is signed with Apple's Product Security PGP key,
and details are available at:
https://www.apple.com/support/security/pgp/