CVE-2006-3376 log

Source
Severity Critical
Remote Yes
Type Arbitrary code execution
Description
Integer overflow in player.c in libwmf 0.2.8.4, as used in multiple products including (1) wv, (2) abiword, (3) freetype, (4) gimp, (5) libgsf, and (6) imagemagick allows remote attackers to execute arbitrary code via the MaxRecordSize header field in a WMF file.
Group Package Affected Fixed Severity Status Ticket
AVG-16 libwmf 0.2.8.4-13 0.2.8.4-14 Critical Fixed FS#49162
Date Advisory Group Package Severity Type
01 Jan 2017 ASA-201701-1 AVG-16 libwmf Critical multiple issues