GDAL through 3.0.1 has a poolDestroy double free in OGRExpatRealloc in ogr/ogr_expat.cpp when the 10MB threshold is exceeded. Reference: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=16178 Upstream commit: https://github.com/OSGeo/gdal/commit/148115fcc40f1651a5d15fa34c9a8c528e7147bb
Created gdal tracking bugs for this issue: Affects: epel-all [bug 1765721] Affects: fedora-all [bug 1765720]
Created mingw-gdal tracking bugs for this issue: Affects: fedora-all [bug 1765724]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.