Skip to content
SUSE 15 SP7 libzypp Critical Security Issues Advisory 2026-4092

SUSE 15 SP7 libzypp Critical Security Issues Advisory 2026-4092

Linuxsecurity •LinuxSecurity Advisories • September 9, 2026

Keep your Linux systems secure and up to date with practical patching guidance. Review Linux Patching Best Practices ×

## This update for libzypp, zypper fixes the following issues: Security issue fixed: * invalidating legacy libzypp unsigned-repository cache state [LIBZYPP-LEGACY- CACHE-01] (bsc#1274625). * hasCredentials() requires both username AND password to be non-empty (bsc#1273242). * GPG Key hints in repoindex.xml require at least a long id to allow auto- import (bsc#1271730). Non security issues fixed: * Econf parser adds tags in drop-in files outside any section to [main] (bsc#1272534). * libzypp: X-ZYpp-AnonymousId header anomaly (bsc#1268321). * Need zypper option to disable services to fix Dockerfile builds in OBS (bsc#1257249). * zypper loads repository data and installed packages prior to checking for required arguments (bsc#1274091).

## This update for libzypp, zypper fixes the following issues: Security issue fixed: * invalidating legacy libzypp unsigned-repository cache state [LIBZYPP-LEGACY- CACHE-01] (bsc#1274625). * hasCredentials() requires both username AND password to be non-empty (bsc#1273242). * GPG Key hints in repoindex.xml require at least a long id to allow auto- import (bsc#1271730). Non security issues fixed: * Econf parser adds tags in drop-in files outside any section to [main] (bsc#1272534). * libzypp: X-ZYpp-AnonymousId header anomaly (bsc#1268321). * Need zypper option to disable services to fix Dockerfile builds in OBS (bsc#1257249). * zypper loads repository data and installed packages prior to checking for required arguments (bsc#1274091).

* Basesystem Module 15-SP7

* SUSE Linux Enterprise Desktop 15 SP7

* SUSE Linux Enterprise Real Time 15 SP7

* SUSE Linux Enterprise Server 15 SP7

* SUSE Linux Enterprise Server for SAP Applications 15 SP7

An update that has nine security fixes can now be installed.

*

*

*

*

*

*

*

Announcement ID: SUSE-SU-2026:4092-1 Release Date: 2026-09-08T16:31:50Z Rating: critical

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Linux Security - Your source for Top Linux News, Advisories, HOWTOs and Feature Releases