Buffer overflow in the XML parser in Trillian 3.1.9.0, and possibly earlier, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted DTD file.
https://exchange.xforce.ibmcloud.com/vulnerabilities/41782
http://www.securityfocus.com/archive/1/490772/100/0/threaded