Skip to main content

Double Free

CVE-2018-6952

Severity High
Score 7.5/10

Summary

A double free exists in the another_hunk function in pch.c in GNU patch through 2.7.6.

  • LOW
  • NETWORK
  • NONE
  • UNCHANGED
  • NONE
  • NONE
  • NONE
  • HIGH

CWE-415 - Double Free

The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.

References

Advisory Timeline

  • Published