CVE-2017-9271: Fedoraproject Fedora
Low severity, CVSS 3.3. EPSS: 0.3% chance of exploitation in the next 30 days.
The commandline package update tool zypper writes HTTP proxy credentials into its logfile, allowing local attackers to gain access to proxies used.
Affected products
- Fedoraproject Fedora: version 33 only
- Opensuse Zypper: affected versions not specified
Published 2018-03-01. Last modified 2026-06-17.