Stack-based buffer overflow in the Message::AddToString function in message/Message.cpp in MUSCLE before 4.40 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted message. NOTE: some of these details are obtained from third party information.
https://public.msli.com/lcs/muscle/muscle/HISTORY.txt
https://exchange.xforce.ibmcloud.com/vulnerabilities/45959
http://www.vupen.com/english/advisories/2008/2869