Bug 1100095

Summary: installling updates/zypper patch claims to remove firefox
Product: [openSUSE] openSUSE Distribution Reporter: Ludwig Nussel <lnussel>
Component: MaintenanceAssignee: Michael Schröder <mls>
Status: RESOLVED DUPLICATE QA Contact: E-mail List <qa-bugs>
Severity: Major    
Priority: P5 - None CC: adrian.schroeter, dimstar, dleuenberger, ma
Version: Leap 15.1   
Target Milestone: ---   
Hardware: Other   
OS: Other   
Whiteboard:
Found By: --- Services Priority:
Business Priority: Blocker: ---
Marketing QA Status: --- IT Deployment: ---
Bug Depends on: 1104415    
Bug Blocks:    
Attachments: screenshot of KDE discover warning about firefox removal

Description Ludwig Nussel 2018-07-04 09:39:37 UTC
Created attachment 776071 [details]
screenshot of KDE discover warning about firefox removal

zypper patch claims to remove firefox when installing updates. It refers to the application, not the package. So appstream metadata related. I thought that was supposed to be solved? It's even worse in KDE discover (see screenshot).
Comment 1 Michael Andres 2018-07-04 10:00:55 UTC
Frankly, I don't think this will ever be solved. 

In zypper 1.14.7 we suppress all application related summary messages. And I'm preparing to completely drop them the pool...
Comment 2 Ludwig Nussel 2018-07-04 10:54:45 UTC
not looking at that from package management side would also be fine as long as we don't get those messages anymore. So will that zypper be made available as online update?
Comment 3 Michael Andres 2018-07-04 11:02:57 UTC
(In reply to Ludwig Nussel from comment #2)
> So will that zypper be made available as online update?

Yes, probably submitted this week
Comment 4 Dominique Leuenberger 2018-07-04 11:22:29 UTC
'old problem': the update channel has no valid AppStream metadata (just like every other OBS project)
Comment 8 Michael Andres 2018-09-07 10:17:25 UTC
libzypp-17.7.0 (TW/SLE15) will no longer generate application pseudo packages in the .solv caches. You can think about building libsolv with -DENABLE_APPDATA=0 in 15.1.
Comment 9 Swamp Workflow Management 2018-09-11 19:11:37 UTC
SUSE-SU-2018:2690-1: An update that solves two vulnerabilities and has 26 fixes is now available.

Category: security (important)
Bug References: 1036304,1041178,1043166,1045735,1058515,1066215,1070770,1070851,1082318,1084525,1088037,1088705,1091624,1092413,1093103,1096217,1096617,1096803,1099847,1100028,1100095,1100427,1101349,1102019,1102429,408814,428822,907538
CVE References: CVE-2017-9269,CVE-2018-7685
Sources used:
SUSE Linux Enterprise Module for Development Tools 15 (src):    libsolv-0.6.35-3.5.2
SUSE Linux Enterprise Module for Basesystem 15 (src):    libsolv-0.6.35-3.5.2, libzypp-17.6.4-3.10.1, zypper-1.14.10-3.7.1
Comment 10 Swamp Workflow Management 2018-09-17 10:11:31 UTC
openSUSE-SU-2018:2739-1: An update that solves two vulnerabilities and has 26 fixes is now available.

Category: security (important)
Bug References: 1036304,1041178,1043166,1045735,1058515,1066215,1070770,1070851,1082318,1084525,1088037,1088705,1091624,1092413,1093103,1096217,1096617,1096803,1099847,1100028,1100095,1100427,1101349,1102019,1102429,408814,428822,907538
CVE References: CVE-2017-9269,CVE-2018-7685
Sources used:
openSUSE Leap 15.0 (src):    libsolv-0.6.35-lp150.2.3.1, libzypp-17.6.4-lp150.2.3.1, zypper-1.14.10-lp150.2.3.1
Comment 12 Swamp Workflow Management 2018-09-20 00:00:06 UTC
This is an autogenerated message for OBS integration:
This bug (1100095) was mentioned in
https://build.opensuse.org/request/show/636740 15.0 / libzypp+zypper
Comment 13 Michael Andres 2018-09-21 06:44:44 UTC
libzypp-17.7.0 (TW/SLE15) will no longer generate application pseudo packages in the .solv caches.

*** This bug has been marked as a duplicate of bug 1104415 ***
Comment 14 Swamp Workflow Management 2018-09-21 13:11:47 UTC
openSUSE-RU-2018:2785-1: An update that has three recommended fixes can now be installed.

Category: recommended (important)
Bug References: 1100095,1104415,1108999
CVE References: 
Sources used:
openSUSE Leap 15.0 (src):    libzypp-17.7.0-lp150.2.6.1, zypper-1.14.11-lp150.2.6.1
Comment 16 Swamp Workflow Management 2018-10-05 16:11:51 UTC
SUSE-RU-2018:3025-1: An update that has three recommended fixes can now be installed.

Category: recommended (moderate)
Bug References: 1100095,1104415,1108999
CVE References: 
Sources used:
SUSE Linux Enterprise Module for Basesystem 15 (src):    libzypp-17.7.0-3.13.1, zypper-1.14.11-3.10.1