Related Vulnerabilities: CVE-2015-4695  

It was discovered that libwmf did not properly process certain WMF files. By tricking a victim into opening a specially crafted WMF file in an application using libwmf, a remote attacker could possibly exploit this flaw to cause a crash or execute arbitrary code with the privileges of the user running the application.

Severity Critical

Remote Yes

Type Arbitrary code execution

Description

It was discovered that libwmf did not properly process certain WMF files. By tricking a victim into opening a specially crafted WMF file in an application using libwmf, a remote attacker could possibly exploit this flaw to cause a crash or execute arbitrary code with the privileges of the user running the application.

AVG-16 libwmf 0.2.8.4-13 0.2.8.4-14 Critical Fixed FS#49162

01 Jan 2017 ASA-201701-1 AVG-16 libwmf Critical multiple issues