Rhys Kidd discovered a vulnerability in l2tpns, a layer 2 tunnelling protocol network server, which could be triggered by a remote user to execute arbitrary code.
For the stable distribution (sarge), this problem has been fixed in version 2.0.14-1sarge1.
For the unstable distribution (sid) this problem has been fixed in version 2.1.21-1.
We recommend that you upgrade your l2tpns package.
MD5 checksums of the listed files are available in the original advisory.