A potential remote exploit was found in the bdecode_recursive routine that
could trigger a stack overflow when passed malformed message data. This
release adds a fix for this issue from the upstream subversion repository that
limits the maximum recursive depth of this function.
This update includes a fix for a denial-of-service issue (CVE-2007-3568) whereby an attacker who could get an imlib-using user to view a specially-crafted BMP image could cause the user's CPU to go into an infinite loop.