A double free issue was addressed with improved memory management. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5. A remote attacker may be able to cause unexpected system termination or corrupt kernel memory.
The product calls free() twice on the same memory address.
Link | Tags |
---|---|
https://support.apple.com/HT211168 | vendor advisory |
https://support.apple.com/HT211170 | vendor advisory |