Related Vulnerabilities: CVE-2006-3376  

Integer overflow in player.c in libwmf 0.2.8.4, as used in multiple products including (1) wv, (2) abiword, (3) freetype, (4) gimp, (5) libgsf, and (6) imagemagick allows remote attackers to execute arbitrary code via the MaxRecordSize header field in a WMF file.

Severity Critical

Remote Yes

Type Arbitrary code execution

Description

Integer overflow in player.c in libwmf 0.2.8.4, as used in multiple products including (1) wv, (2) abiword, (3) freetype, (4) gimp, (5) libgsf, and (6) imagemagick allows remote attackers to execute arbitrary code via the MaxRecordSize header field in a WMF file.

AVG-16 libwmf 0.2.8.4-13 0.2.8.4-14 Critical Fixed FS#49162

01 Jan 2017 ASA-201701-1 AVG-16 libwmf Critical multiple issues