Wvware

Libwmf

6 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.49%
  • Published 23.03.2017 18:59:00
  • Last modified 20.04.2025 01:37:25

The wmf_malloc function in api.c in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (application crash) via a crafted wmf file, which triggers a memory allocation failure.

Exploit
  • EPSS 1.96%
  • Published 01.07.2015 14:59:13
  • Last modified 12.04.2025 10:46:40

Use-after-free vulnerability in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) via a crafted WMF file to the (1) wmf2gd or (2) wmf2eps command.

Exploit
  • EPSS 1.55%
  • Published 01.07.2015 14:59:12
  • Last modified 12.04.2025 10:46:40

meta.h in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted WMF file.

Exploit
  • EPSS 5.72%
  • Published 01.07.2015 14:59:10
  • Last modified 12.04.2025 10:46:40

Heap-based buffer overflow in the DecodeImage function in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted "run-length count" in an image in a WMF file.

  • EPSS 4.3%
  • Published 01.07.2015 14:59:03
  • Last modified 12.04.2025 10:46:40

Heap-based buffer overflow in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted BMP image.

  • EPSS 12.23%
  • Published 06.07.2006 20:05:00
  • Last modified 03.04.2025 01:03:51

Integer overflow in player.c in libwmf 0.2.8.4, as used in multiple products including (1) wv, (2) abiword, (3) freetype, (4) gimp, (5) libgsf, and (6) imagemagick allows remote attackers to execute arbitrary code via the MaxRecordSize header field i...