Fedora has issued an advisory on March 14: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/74VI6EPZ6LD2O4JJXJBTYQ4U4VUO2ZDO/ The issue is fixed upstream in 12.2.4. Mageia 6 is also affected.
The security issues for this package are starting to pile up (also Bug 21975 and Bug 22202). Please fix them ASAP.
Status comment: (none) => Fixed upstream in 12.2.4Whiteboard: (none) => MGA6TOOBlocks: (none) => 22202
openSUSE has issued an advisory for this on May 30: https://lists.opensuse.org/opensuse-updates/2018-05/msg00139.html
Depends on: (none) => 23312
Whiteboard: MGA6TOO => (none)Version: Cauldron => 6
Mageia 6 is EOL.
CC: (none) => mramboStatus: NEW => RESOLVEDResolution: (none) => OLD