
====================================================================

                             CERT-Renater

                 Note d'Information No. 2020/VULN291
_____________________________________________________________________

DATE                : 20/05/2020

HARDWARE PLATFORM(S): /

OPERATING SYSTEM(S): Systems running APPLE Xcode versions prior to 11.5.

=====================================================================
https://support.apple.com/fr-fr/HT211183
_____________________________________________________________________


APPLE-SA-2020-05-20-1 Xcode 11.5

Xcode 11.5 is now available and addresses the following:

Git
Available for: macOS Catalina 10.15.2 and later
Impact: A crafted git URL that contains a newline in it may cause
credential information to be provided for the wrong host
Description: This issue was addressed by forbidding a newline
character in any value passed via the credential protocol.
CVE-2020-11008: Carlo Arenas

Installation note:

Xcode 11.5 may be obtained from:

https://developer.apple.com/xcode/downloads/

To check that the Xcode has been updated:

* Select Xcode in the menu bar
* Select About Xcode
* The version after applying this update will be "Xcode 11.5".


=========================================================
+ CERT-RENATER        | tel : 01-53-94-20-44            +
+ 23/25 Rue Daviel    | fax : 01-53-94-20-41            +
+ 75013 Paris         | email:cert@support.renater.fr   +
=========================================================





