CVE Database
/

CVE-2009-1364

Back to search

CVE-2009-1364

Published: May 1, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

Use-after-free vulnerability in the embedded GD library in libwmf 0.2.8.4 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WMF file.

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2009:0457
vendor-advisory
x_refsource_REDHAT
34964
third-party-advisory
x_refsource_SECUNIA
35001
third-party-advisory
x_refsource_SECUNIA
35190
third-party-advisory
x_refsource_SECUNIA
openSUSE-SU-2015:1132
vendor-advisory
x_refsource_SUSE
FEDORA-2009-5524
vendor-advisory
x_refsource_FEDORA
SUSE-SR:2009:011
vendor-advisory
x_refsource_SUSE
FEDORA-2009-5518
vendor-advisory
x_refsource_FEDORA
openSUSE-SU-2015:1134
vendor-advisory
x_refsource_SUSE
35686
third-party-advisory
x_refsource_SECUNIA
1022154
vdb-entry
x_refsource_SECTRACK
34901
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:10959
vdb-entry
signature
x_refsource_OVAL
GLSA-200907-01
vendor-advisory
x_refsource_GENTOO
35416
third-party-advisory
x_refsource_SECUNIA
FEDORA-2009-5517
vendor-advisory
x_refsource_FEDORA
DSA-1796
vendor-advisory
x_refsource_DEBIAN
34792
vdb-entry
x_refsource_BID
35025
third-party-advisory
x_refsource_SECUNIA
USN-769-1
vendor-advisory
x_refsource_UBUNTU
MDVSA-2009:106
vendor-advisory
x_refsource_MANDRIVA
ADV-2009-1228
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2009-1364 - Security Vulnerability | QwikSec