Mandriva Linux Security Advisory 2009-106 – Use-after-free vulnerability in the embedded GD library in libwmf 0.2.8.4 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted WMF file. The updated packages have been patched to prevent this.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/77290/MDVSA-2009-106.txt
Source: https://packetstormsecurity.com/files/77290/Mandriva-Linux-Security-Advisory-2009-106.html

