libcurl is affected by a buffer overflow in the handling of URLs for the TFTP protocol, which could be exploited to compromise a user's system. Solution: upgrade to 7.15.3. More information: http://security.gentoo.org/glsa/glsa-200603-19.xml http://curl.haxx.se/docs/adv_20060320.html Yaakov