Use-after-free vulnerability in the embedded GD library in libwmf 0.2.8.4 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WMF file.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libwmf | Francis_james_franklin | 0.2.8.4 (including) | 0.2.8.4 (including) |
Red Hat Enterprise Linux 4 | RedHat | libwmf-0:0.2.8.3-5.8 | * |
Red Hat Enterprise Linux 5 | RedHat | libwmf-0:0.2.8.4-10.2 | * |
Libwmf | Ubuntu | dapper | * |
Libwmf | Ubuntu | hardy | * |
Libwmf | Ubuntu | intrepid | * |
Libwmf | Ubuntu | jaunty | * |
Libwmf | Ubuntu | upstream | * |