See CVE-2011-2690 (we shouldn't be affected), CVE-2011-2691 (same), CVE-2011-2692 (no idea)
Attach a file by drag & drop or click to upload