* An integer overflow leading to a heap-based buffer overflow in the
Open() function in modules/demux/tta.c (CVE-2008-3732).
* A signedness error leading to a stack-based buffer overflow in the
mms_ReceiveCommand() function in modules/access/mms/mmstu.c
(CVE-2008-3794).
A remote attacker could entice a user to open a specially crafted file,
possibly resulting in the remote execution of arbitrary code with the
privileges of the user running the application.