PT-2015-4915 · Linux+5 · Libwmf+5

Fernando Muñoz

+1

·

Published

2015-07-01

·

Updated

2025-09-03

·

CVE-2015-0848

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions libwmf version 0.2.8.4
Description A heap-based buffer overflow issue allows remote attackers to cause a denial of service or possibly execute arbitrary code via a crafted BMP image.
Recommendations For libwmf version 0.2.8.4, consider updating to a newer version that addresses this issue, as using a crafted BMP image could lead to a denial of service or code execution. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

Buffer Overflow

Weakness Enumeration

Related Identifiers

ALT-PU-2017-2327
ALT-PU-2025-10401
ALT-PU-2025-11012
CESA-2015_1917
CVE-2015-0848
DLA-253-1
DSA-3302-1
MGASA-2015-0261
OPENSUSE-SU-2024:10337-1
RHSA-2015:1917
RHSA-2015_1917
SUSE-SU-2015:1378-1
SUSE-SU-2015:1484-1
SUSE-SU-2015_1378-1
USN-2670-1

Affected Products

Alt Linux
Centos
Red Hat
Suse
Ubuntu
Libwmf