These are all security issues fixed in the librsync-devel-1.0.0-2.8 package on the GA media of openSUSE Tumbleweed.
{ "binaries": [ { "rdiff": "1.0.0-2.8", "librsync-devel": "1.0.0-2.8", "librsync2": "1.0.0-2.8" } ] }