A security issue in mcabber has been announced on February 9: http://openwall.com/lists/oss-security/2017/02/09/29 It sounds like the version in Mageia 5 is not affected. The issue is fixed upstream in 1.0.5 and the commit that fixed it is linked in the message above.
Updated to version 1.0.5 which fixed CVE-2017-5589 according to upstream. Also added the linked patch (which was not already applied to 1.0.5) which fixes CVE-2017-5604. Freeze push requested. Package built.
Status: NEW => RESOLVEDResolution: (none) => FIXED
LWN reference for CVE-2017-5589: https://lwn.net/Vulnerabilities/714423/