"On the first anniversary of Microsoft's 'trustworthy computing' initiative, the spotlight has gone on security of open source software.
"The issue arises after the discovery last month of a serious vulnerability in CVS (concurrent versions system), a Linux and Unix development tool.
"The US-based CERT alert service noted that CVS servers could be accessed by unauthorised users and used to execute arbitrary code via a set of directory requests that could free a memory reference..."