Mandriva Linux Security Advisory 2009-249 – A heap-based buffer overflow flaw was found in the way newt processes content that is to be displayed in a text dialog box. A local attacker could issue a specially-crafted text dialog box display request (direct or via a custom application), leading to a denial of service (application crash) or, potentially, arbitrary code execution with the privileges of the user running the application using the newt library. This update provides a solution to this vulnerability. Packages for 2008.0 are being provided due to extended support for Corporate products.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/83503/MDVSA-2009-249-1.txt
Source: https://packetstormsecurity.com/files/83503/Mandriva-Linux-Security-Advisory-2009-249.html

