Affected systems are Solaris 7, 8 and 9 on both the Sparc and x86 platforms, and the JDS 2003 and JDS release 2 which have not been updated.
The security vulnerabilities are in the X Pixmap (libXpm) library which also affected the Motif library (libXm) shipped with Solaris and the Java Desktop System for Linux.
The link for this article located at Nick Farrell is no longer available.