Mandriva Linux Security Advisory 2009-106 – Use-after-free vulnerability in the embedded GD library in libwmf 0.2.8.4 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WMF file. The updated packages have been patched to prevent this. Packages for 2008.0 are being provided due to extended support for Corporate products.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/83399/MDVSA-2009-106-1.txt
Source: https://packetstormsecurity.com/files/83399/Mandriva-Linux-Security-Advisory-2009-106.html