Debian Security Advisory DSA 909-1 – Daniel Schreckling discovered that the MIME viewer in horde3, a web application suite, does not always sanitize its input leaving a possibility to force the return of malicious code that could be executed on the victim’s machine.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/41931/dsa-909-1.txt
Source: https://packetstormsecurity.com/files/41931/Debian-Linux-Security-Advisory-909-1.html