CVE-2020-37239
CriticalPublic PoC
Published: 16 May 2026
Published
16 May 2026
Modified
16 May 2026
KEV Added
—
Patch
—
CVSS Score
9.8
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
N/A
Risk Priority
20
60% EPSS · 20% KEV · 20% CVSS
Summary
CVE-2020-37239 is a critical-severity Double Free (CWE-415) vulnerability in Gegl (inferred from references). Its CVSS base score is 9.8 (Critical).
Operationally, it is not currently listed in the CISA KEV catalog; a public proof-of-concept is referenced.
NVD Description
libbabl 0.1.62 contains a broken double free detection vulnerability that allows attackers to bypass memory safety checks by exploiting signature overwriting in freed chunks. Attackers can call babl_free() twice on the same pointer without triggering detection, as libc's malloc metadata…
more
overwrites babl's signature field upon freeing, enabling potential memory corruption and code execution.
Deeper analysisAI
Automated synthesis unavailable for this CVE.
Details
- CWE(s)
Affected Products
Gegl
—
inferred from references and description; NVD did not file a CPE for this CVE