CVE-2015-4696: Wvware Libwmf

Medium severity, CVSS 4.3. EPSS: 6% chance of exploitation in the next 30 days.

Use-after-free vulnerability in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) via a crafted WMF file to the (1) wmf2gd or (2) wmf2eps command.

Affected products

  • Wvware Libwmf: version 0.2.8.4 only

Published 2015-07-01. Last modified 2026-06-17.