CVE-2017-7529: Apple Xcode

High severity, CVSS 7.5. EPSS: 62.6% chance of exploitation in the next 30 days.

Nginx versions since 0.5.6 up to and including 1.13.2 are vulnerable to integer overflow vulnerability in nginx range filter module resulting into leak of potentially sensitive information triggered by specially crafted request.

Affected products

  • Apple Xcode: before 13.0 (fixed in 13.0)
  • F5 Nginx: from 0.5.6, up to and including 1.12.1; from 1.13.0, up to and including 1.13.2
  • Puppet Puppet Enterprise: before 2016.4.7 (fixed in 2016.4.7); from 2017.1.0, up to and including 2017.1.1; from 2017.2.1, up to and including 2017.2.3

Published 2017-07-13. Last modified 2026-06-17.