CVE-2016-4704 — Improper Restriction of Operations within the Bounds of a Memory Buffer in Apple Xcode

Severity
7.8HIGHNVD
EPSS
0.1%
top 83.10%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedSep 18
Latest updateMay 17

Description

otool in Apple Xcode before 8 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspecified vectors, a different vulnerability than CVE-2016-4705.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages1 packages

â–¶NVDapple/xcode7.3.1

🔴Vulnerability Details

2
GHSA
GHSA-65gj-m3fp-67g9: otool in Apple Xcode before 8 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspeci↗2022-05-17
â–¶
CVEList
CVE-2016-4704: otool in Apple Xcode before 8 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspeci↗2016-09-18
â–¶

📋Vendor Advisories

1
Apple
CVE-2016-4704: Xcode 8↗2016-09-13
â–¶
CVE-2016-4704 — Apple Xcode vulnerability | cvebase