CVE-2014-6272 The evbuffer API in libevent is affected by an integer overflow which potentially allows a heap overflow or denial of service (ATM no existing application is known which uses the API in an affected manner).
Fixed in upstream Debian package version 1.4.13-stable-1+deb6u1
*** This bug has been marked as a duplicate of bug 43554 ***