libproxy 0.4.9 fixes a buffer overflow reported by Tomas Mraz:
http://code.google.com/p/libproxy/source/detail?r=853
https://groups.google.com/forum/?fromgroups=#!topic/libproxy/VxZ8No7mT0E
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-4504
Upstream announcement also mentions another issue - CVE-2012-4505. It
is related, but different problem that was found in pre-0.4 versions
while investigating if they were affected by CVE-2012-4504.
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-4505