CVE-2016-9011 PUBLISHED

The wmf_malloc function in api.c in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (application crash) via a crafted wmf file, which triggers a memory allocation failure.

EPSS 0.49% · 65.4th percentile

Risk Scores

EPSS Score
0.49%
65.4th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSlibwmf0, 0.2.8.4-10.3ubuntu2, 0.2.8.4-10.4ubuntu1

Timeline

References

Open in Interactive Console →