Vulnerability Description
Multiple unspecified vulnerabilities in Git before 2.5.4, as used in Apple Xcode before 7.2, have unknown impact and attack vectors. NOTE: this CVE is associated only with Xcode use cases.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Git Project | Git | <= 2.5.3 |
| Apple | Xcode | 7.1.1 |
References
- http://lists.apple.com/archives/security-announce/2015/Dec/msg00004.htmlVendor Advisory
- http://www.securitytracker.com/id/1034340
- https://github.com/git/git/blob/master/Documentation/RelNotes/2.5.4.txtVendor Advisory
- https://support.apple.com/HT205642Vendor Advisory
- http://lists.apple.com/archives/security-announce/2015/Dec/msg00004.htmlVendor Advisory
- http://www.securitytracker.com/id/1034340
- https://github.com/git/git/blob/master/Documentation/RelNotes/2.5.4.txtVendor Advisory
- https://support.apple.com/HT205642Vendor Advisory
FAQ
What is CVE-2015-7082?
CVE-2015-7082 is a vulnerability with a CVSS score of 10.0 (HIGH). Multiple unspecified vulnerabilities in Git before 2.5.4, as used in Apple Xcode before 7.2, have unknown impact and attack vectors. NOTE: this CVE is associated only with Xcode use cases.
How severe is CVE-2015-7082?
CVE-2015-7082 has been rated HIGH with a CVSS base score of 10.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-7082?
Check the references section above for vendor advisories and patch information. Affected products include: Git Project Git, Apple Xcode.