A statically allocated buffer is overwritter in the case that a very long Object Identifier is specified in stringified dotted notation to the smiGetNode function of libsmi. This may result in arbitraty code execution by cleverly overwriting key pointers in memory. Fix avaliable in the advisory
libsmi-0.4.8-alt2 -> sisyphus: * Mon Oct 25 2010 Alexey Shabalin <shaba@altlinux> 0.4.8-alt2 - some backports - security fix: CVE-2010-2891 (ALT #24394)