An issue was discovered in certain Apple products. macOS before 10.12.4 is affected. The issue involves the SecurityFoundation component. A double free vulnerability allows remote attackers to execute arbitrary code via a crafted certificate.
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mac_os_x | Apple | * | 10.12.3 (including) |