CVE

Id
19480  
CVE No.
CVE-2006-3376  
Status
Candidate  
Description
Integer overflow in player.c in libwmf 0.2.8.4, as used in multiple products including (1) wv, (2) abiword, (3) freetype, (4) gimp, (5) libgsf, and (6) imagemagick allows remote attackers to execute arbitrary code via the MaxRecordSize header field in a WMF file.  
Phase
Assigned (20060706)  
Votes
None (candidate not yet proposed)  
Comments