CVE-2015-3027: Apple Xcode

Medium severity, CVSS 5.0. EPSS: 1.3% chance of exploitation in the next 30 days.

Clang in LLVM, as used in Apple Xcode before 6.3, performs incorrect register allocation in a way that triggers stack storage for stack cookie pointers, which might allow context-dependent attackers to bypass a stack-guard protection mechanism via crafted input to an affected C program.

Affected products

  • Apple Xcode: up to and including 6.2

Published 2015-04-10. Last modified 2026-06-17.