CVE-2024-44228: High severity Apple Xcode vulnerability
Git. This is a vulnerability in open source code and Apple Software is among the affected projects. The CVE-ID was assigned by a third party. Learn more about the issue and CVE-ID at cve.org.
Other sources
IDE Documentation. This issue was addressed by enabling hardened runtime.
— Apple
IDE Tools. A privacy issue was addressed by removing sensitive data.
— Apple
Kernel. This issue was addressed through improved state management.
— Apple
Playgrounds. This issue was addressed with improved permissions checking.
— Apple
This issue was addressed with improved permissions checking. This issue is fixed in Xcode 16. An app may be able to inherit Xcode permissions and access user data.
— MITRE
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-44228?
CVE-2024-44228 is classified as a medium severity vulnerability affecting Apple Xcode.
How do I fix CVE-2024-44228?
To remediate CVE-2024-44228, users should update their Apple Xcode to version 16 or later.
Which versions of Apple Xcode are affected by CVE-2024-44228?
CVE-2024-44228 affects all versions of Apple Xcode prior to version 16.
What type of vulnerability is CVE-2024-44228?
CVE-2024-44228 is a vulnerability in open source code that impacts the security of affected software.
Has CVE-2024-44228 been addressed?
Yes, CVE-2024-44228 has been addressed by enabling the hardened runtime in Apple Xcode.