DSA-1796 libwmf -- pointer use-after-free
|ID: oval:org.mitre.oval:def:7918||Date: (C)2009-12-15 (M)2017-11-27|
|Class: PATCH||Family: unix|
Tavis Ormandy discovered that the embedded GD library copy in libwmf, a library to parse windows metafiles (WMF), makes use of a pointer after it was already freed. An attacker using a crafted WMF file can cause a denial of service or possibly the execute arbitrary code via applications using this library.