Mandrake Linux Security Advisory : libwmf (MDKSA-2007:123)
Medium Nessus Plugin ID 25517
SynopsisThe remote Mandrake Linux host is missing one or more security updates.
DescriptionA flaw in libgd2 was found by Xavier Roche where it would not correctly validate PNG callback results. If an application linked against libgd2 was tricked into processing a specially crafted PNG file, it could cause a denial of service scenario via CPU resource consumption.
Libwmf uses an embedded copy of the gd source and may also be affected by this issue.
The updated packages have been patched to prevent this issue.
SolutionUpdate the affected packages.