SUSE has issued an advisory today (July 14): https://lists.suse.com/pipermail/sle-security-updates/2022-July/011544.html The issue is fixed upstream in 17.29.6. Mageia 8 is also affected.
Whiteboard: (none) => MGA8TOOStatus comment: (none) => 17.29.6
Assigning to our registered libzypp maintainer.
CC: (none) => marja11Assignee: bugsquad => cjw
openSUSE has issued an advisory for this today (September 1): https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/AYJVCDZFHL3RLKSFHF4ITKBC25PHGJ5K/
cauldron was updated to 17.31.1, so fixed here.
CC: (none) => geiger.david68210Version: Cauldron => 8Whiteboard: MGA8TOO => (none)
Mageia 8 EOL
CC: (none) => nicolas.salgueroStatus: NEW => RESOLVEDResolution: (none) => OLD