Debian Security Advisory DSA 1587-1 (mtr)

Summary
The remote host is missing an update to mtr announced via advisory DSA 1587-1.
Solution
https://secure1.securityspace.com/smysecure/catid.html?in=DSA%201587-1
Insight
Adam Zabrocki discovered that under certain circumstances mtr, a full screen ncurses and X11 traceroute tool, could be tricked into executing arbitrary code via overly long reverse DNS records. For the stable distribution (etch), this problem has been fixed in version 0.71-2etch1. For the unstable distribution (sid), this problem has been fixed in version 0.73-1. We recommend that you upgrade your mtr package.