CVE-2009-1364
EPSS 3.1%libwmf - denial of service
Published: 5/1/2009Modified: 4/28/2026
Description
Use-after-free vulnerability in the embedded GD library in libwmf 0.2.8.4 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WMF file.
Affected packages (2)
- Debian/libwmffrom 0, < 0.2.8.4-6.1
- Debian/libwmffrom 0, < 0.2.8.4-2+etch1