CVE-2026-20532

In apu, there is a possible application crash due to double free. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS11249024; Issue ID: MSV-9168.

  • Published Oct 5, 2026
  • CVSS 6.2 medium
  • 0.1% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-20532 at the National Vulnerability Database