Sean de Regge and Greg Linares discovered multiple heap and stack based buffer overflows in FLAC, the Free Lossless Audio Codec, which could lead to the execution of arbitrary code.
For the old stable distribution (sarge), these problems have been fixed in version 1.1.1-5sarge1.
For the stable distribution (etch), these problems have been fixed in version 1.1.2-8.
For the unstable distribution (sid), these problems have been fixed in version 1.2.1-1.
We recommend that you upgrade your flac packages.
MD5 checksums of the listed files are available in the original advisory.