==================================================================== CERT-Renater Note d'Information No. 2020/VULN215 _____________________________________________________________________ DATE : 20/04/2020 HARDWARE PLATFORM(S): / OPERATING SYSTEM(S): Systems running APPLE Xcode versions prior to 11.4.1. ===================================================================== https://support.apple.com/fr-fr/HT211141 _____________________________________________________________________ Xcode 11.4.1 Released April 15, 2020 Git Available for: macOS Catalina 10.15.2 and later Impact: A crafted git URL that contains a newline in it may cause credential information to be provided for the wrong host Description: This issue was addressed by forbidding a newline character in any value passed via the credential protocol. CVE-2020-5260: Felix Wilhelm of Google Project Zero ========================================================= + CERT-RENATER | tel : 01-53-94-20-44 + + 23/25 Rue Daviel | fax : 01-53-94-20-41 + + 75013 Paris | email:cert@support.renater.fr + =========================================================