Open source Roundcube webmail can be attacked ... by sending it an e-mail
The developers of open source webmail package Roundcube want sysadmins to push in a patch, because a bug in versions prior to 1.2.3 let an attacker crash it remotely - by sending what looks like valid e-mail data."