Debian-LTS has issued an advisory on September 30: https://www.debian.org/lts/security/2021/dla-2769 The issues are fixed upstream in 1.4.18. Mageia 8 is also affected.
Status comment: (none) => Fixed upstream in 1.4.18Whiteboard: (none) => MGA8TOO
fixed in mga 8/9: src: - xmlpull-1.2.0-1.mga8 - mxparser-1.2.2-1.mga8 - xstream-1.4.18-1.mga8 rpms: - mxparser-1.2.2-1.mga8 - xmlpull-1.2.0-1.mga8 - xstream-1.4.18-1.mga8
Version: Cauldron => 8CC: (none) => mageiaAssignee: java => qa-bugsWhiteboard: MGA8TOO => (none)Status comment: Fixed upstream in 1.4.18 => (none)
RPMS are actually: xmlpull-1.2.0-1.mga8 xmlpull-javadoc-1.2.0-1.mga8 mxparser-1.2.2-1.mga8 mxparser-javadoc-1.2.2-1.mga8 xstream-benchmark-1.4.18-1.mga8 xstream-1.4.18-1.mga8 xstream-javadoc-1.4.18-1.mga8
MGA8-64 Plasma on Lenovo B50 No installation issues OK on clean install as before.
CC: (none) => herman.viaeneWhiteboard: (none) => MGA8-64-OK
Validating.
Keywords: (none) => validated_updateCC: (none) => andrewsfarm, sysadmin-bugs
Fedora has issued an advisory for this on October 12: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/thread/QGXIU3YDPG6OGTDHMBLAFN7BPBERXREB/
CC: (none) => davidwhodginsKeywords: (none) => advisory
An update for this issue has been pushed to the Mageia Updates repository. https://advisories.mageia.org/MGASA-2021-0474.html
Resolution: (none) => FIXEDStatus: NEW => RESOLVED