PT-2026-96068 · Suse · Libzypp+1

Publicado

2026-09-11

·

Atualizado

2026-09-11

Nenhuma

Não há classificações de severidade ou métricas disponíveis. Quando houver, atualizaremos as informações correspondentes na página.
This update for libzypp, zypper fixes the following issues:
Security issue fixed:
  • invalidating legacy libzypp unsigned-repository cache state [LIBZYPP-LEGACY-CACHE-01] (bsc#1274625).
  • hasCredentials() requires both username AND password to be non-empty (bsc#1273242).
  • GPG Key hints in repoindex.xml require at least a long id to allow auto-import (bsc#1271730).
Non security issues fixed:
  • Econf parser adds tags in drop-in files outside any section to [main] (bsc#1272534).
  • libzypp: X-ZYpp-AnonymousId header anomaly (bsc#1268321).
  • Need zypper option to disable services to fix Dockerfile builds in OBS (bsc#1257249).
  • zypper loads repository data and installed packages prior to checking for required arguments (bsc#1274091).
  • Zypper patch doesn't give enough details about conflicts (bsc#1277790).
  • dependency issue for package 'python3-vsts-cd-manager' after starting the upgrade (bsc#1261038).
Changes for libzypp:
  • Update to version 17.38.15:
  • Prevent libgpgme from launching gpg-agents; we don't need them.
  • defaultLoadSystem: Hand out the ZYpp::Ptr as return value.
  • Replace popen cat/zcat with solv xfopen for testcase loaders (fixes #749)
  • zypp: Improve Testcase Loading for MCP Tools.
  • spec: Remove useless %bcond visibility hidden (is always ON in cmake)
  • zypp.conf: add solver.NoUpdateProvide (default: false) option.
Changes for zypper:
  • Update to version 1.14.101.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

SUSE-SU-2026:4129-1

Produtos afetados

Libzypp
Zypper