Double free vulnerability in Apple Pages 2.x before 2.1 and 5.x before 5.1 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted Microsoft Word file.
The product calls free() twice on the same memory address.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/90672 | vdb entry |
http://www.securitytracker.com/id/1029683 | vdb entry third party advisory |
http://support.apple.com/kb/HT6150 | vendor advisory |
http://secunia.com/advisories/56630 | third party advisory permissions required |
http://secunia.com/advisories/56615 | third party advisory permissions required |
http://www.securityfocus.com/bid/65113 | vdb entry third party advisory |
http://support.apple.com/kb/HT6162 | vendor advisory |
http://osvdb.org/102460 | vdb entry broken link |
http://support.apple.com/kb/HT6117 | vendor advisory |