openSUSE has issued an advisory on May 23: https://lists.opensuse.org/opensuse-updates/2020-05/msg00126.html Mageia 7 is also affected.
Whiteboard: (none) => MGA7TOO
This security issue don't affect release 1.8.1 and 1.8.2, already fixed upstream.
CC: (none) => geiger.david68210
Indeed, fixed upstream in 1.7.0 it looks like.
Resolution: (none) => INVALIDStatus: NEW => RESOLVED