Marked for autoremoval on 20 June due to nginx: #1011303high
Version 1.14.42-2 of zypper is marked for autoremoval from testing on Mon 20 Jun 2022. It depends (transitively) on nginx, affected by #1011303. You should try to prevent the removal by fixing these RC bugs.
CVE-2017-9271:
The commandline package update tool zypper writes HTTP proxy credentials into its logfile, allowing local attackers to gain access to proxies used.
CVE-2017-9271:
The commandline package update tool zypper writes HTTP proxy credentials into its logfile, allowing local attackers to gain access to proxies used.
Depends on packages which need a new maintainer
normal
The packages that zypper depends on which need a new maintainer are:
CVE-2017-9271:
The commandline package update tool zypper writes HTTP proxy credentials into its logfile, allowing local attackers to gain access to proxies used.
CVE-2017-9271:
The commandline package update tool zypper writes HTTP proxy credentials into its logfile, allowing local attackers to gain access to proxies used.