Matt Giuca discovered a buffer overflow in python-cjson, a fast JSON encoder/decoder for Python. This allows a remote attacker to cause a denial of service (application crash) through a specially-crafted Python script.
For the stable distribution (lenny), this problem has been fixed in version 1.0.5-1+lenny1.
For the testing (squeeze) and the unstable (sid) distribution, this problem has been fixed in version 1.0.5-3.
We recommend that you upgrade your python-cjson package.
MD5 checksums of the listed files are available in the original advisory.