Swift
by Apple Inc.
Source repositories
CVEs (6)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2016-4779 | Hig | 0.51 | 7.8 | 0.01 | Sep 25, 2016 | Apple Type Services (ATS) in Apple OS X before 10.12 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file. | ||
| CVE-2016-4701 | Med | 0.40 | 6.2 | 0.00 | Sep 25, 2016 | Application Firewall in Apple OS X before 10.12 allows local users to cause a denial of service via vectors involving a crafted SO_EXECPATH environment variable. | ||
| CVE-2018-4357 | 0.00 | — | 0.00 | Apr 3, 2019 | A memory corruption issue was addressed with improved input validation. This issue affected versions prior to Xcode 10. | |||
| CVE-2018-4220 | 0.00 | — | 0.00 | Jun 8, 2018 | An issue was discovered in certain Apple products. Swift before 4.1.1 Security Update 2018-001 is affected. The issue involves the "Swift for Ubuntu" component. It allows attackers to execute arbitrary code in a privileged context because write and execute permissions are… | |||
| CVE-2017-7167 | 0.00 | — | 0.01 | Apr 3, 2018 | An issue was discovered in certain Apple products. Xcode before 9.2 is affected. The issue involves the "ld64" component. A buffer overflow allows remote attackers to execute arbitrary code via crafted source code. | |||
| CVE-2015-7030 | 0.00 | — | 0.00 | Oct 23, 2015 | The Swift implementation in Apple Xcode before 7.1 mishandles type conversion, which has unspecified impact and attack vectors. |
- risk 0.51cvss 7.8epss 0.01
Apple Type Services (ATS) in Apple OS X before 10.12 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font file.
- risk 0.40cvss 6.2epss 0.00
Application Firewall in Apple OS X before 10.12 allows local users to cause a denial of service via vectors involving a crafted SO_EXECPATH environment variable.
- CVE-2018-4357Apr 3, 2019risk 0.00cvss —epss 0.00
A memory corruption issue was addressed with improved input validation. This issue affected versions prior to Xcode 10.
- CVE-2018-4220Jun 8, 2018risk 0.00cvss —epss 0.00
An issue was discovered in certain Apple products. Swift before 4.1.1 Security Update 2018-001 is affected. The issue involves the "Swift for Ubuntu" component. It allows attackers to execute arbitrary code in a privileged context because write and execute permissions are…
- CVE-2017-7167Apr 3, 2018risk 0.00cvss —epss 0.01
An issue was discovered in certain Apple products. Xcode before 9.2 is affected. The issue involves the "ld64" component. A buffer overflow allows remote attackers to execute arbitrary code via crafted source code.
- CVE-2015-7030Oct 23, 2015risk 0.00cvss —epss 0.00
The Swift implementation in Apple Xcode before 7.1 mishandles type conversion, which has unspecified impact and attack vectors.