VULNERABILITY INTELLIGENCE
CVE-2019-16396
CVSS score7.8 HIGH
EPSS probability1.18%
CISA KEVNot currently listed
Published2019-09-17
Last modified2026-06-17
CVSS vectorCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Description
GnuCOBOL 2.2 has a use-after-free in the end_scope_of_program_name() function in cobc/parser.y via crafted COBOL source code.
Weakness classification
- CWE-416: Use After Free
Primary references
- cve@mitre.org — Exploit, Third Party Advisory
- af854a3a-2127-422b-91ae-364da2661108 — Exploit, Third Party Advisory