CVE-2020-9844Double Free in Apple Macos

CWE-415Double Free3 documents3 sources
Severity
7.5HIGHNVD
EPSS
0.5%
top 32.79%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 9
Latest updateMay 24

Description

A double free issue was addressed with improved memory management. This issue is fixed in iOS 13.5 and iPadOS 13.5, macOS Catalina 10.15.5. A remote attacker may be able to cause unexpected system termination or corrupt kernel memory.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages5 packages

CVEListV5apple/macosunspecifiedmacOS Catalina 10.15.5
NVDapple/ipados< 13.5
NVDapple/mac_os_x10.1310.13.6+4
CVEListV5apple/iosunspecifiediOS 13.5 and iPadOS 13.5
NVDapple/iphone_os< 13.5

🔴Vulnerability Details

2
GHSA
GHSA-7hrr-4j8q-6rvg: A double free issue was addressed with improved memory management2022-05-24
CVEList
CVE-2020-9844: A double free issue was addressed with improved memory management2020-06-09
CVE-2020-9844 — Double Free in Apple Macos | cvebase