Matasano Security interview question

explain buffer overflow, format string vulnerabilities