Logo
vulnerabilityCVE-2009-1364
Name
CVE-2009-1364
Source
NVD ( link)Debian ( link)
Description
Use-after-free vulnerability in the embedded GD library in libwmf 0.2.8.4 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WMF file.
CWEs
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Affected Component
Analysis
libwmf
Patched

Vulnerability Rating#


7.5
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
yocto
kirkstone
0.2.8.4
Patched
yocto
master
0.2.13
Not Affected

Resolved with patches#


libwmf (yocto:kirkstone)

#
Title
Author
Resolve
1
Patch #1
Unknown
CVE-2009-1364

libwmf (yocto:scarthgap)

#
Title
Author
Resolve
1
Patch #1
Unknown
CVE-2009-1364