CVE-2015-4696: Wvware Libwmf
Medium severity, CVSS 4.3. EPSS: 6% chance of exploitation in the next 30 days.
Use-after-free vulnerability in libwmf 0.2.8.4 allows remote attackers to cause a denial of service (crash) via a crafted WMF file to the (1) wmf2gd or (2) wmf2eps command.
Affected products
- Wvware Libwmf: version 0.2.8.4 only
Published 2015-07-01. Last modified 2026-06-17.