fixes Spoofing Weakness and Information Disclosure CVE-2010-4480 and CVE-2010-4481 ok kevlo@ (MAINTAINER)