Ubuntu Security Notice 845-1 – Pavel Polischouk discovered that Pan incorrectly handled certain data structures. If a user were tricked into viewing malicious nntp data, a remote attacker could cause a denial of service or possibly execute arbitrary code with the privileges of the user invoking the program.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/81876/USN-845-1.txt
Source: https://packetstormsecurity.com/files/81876/Ubuntu-Security-Notice-845-1.html