Buffer overflow in the strexpand function in string.c for LinPopUp 1.2.0 allows remote attackers to execute arbitrary code via a crafted message that is not properly handled during a Reply operation.
https://exchange.xforce.ibmcloud.com/vulnerabilities/18627
https://euvd.enisa.europa.eu/vulnerability/EUVD-2004-1279