🛡️ SUSE-RU-2026:2816-1 — python-google-api-core (CVE-2023-29483)
Description
Recommended update for python-aioresponses, python-google-api-core, python-google-api-python-client, python-google-auth, python-google-auth-httplib2, python-google-cloud-appengine-logging, python-google-cloud-artifact-registry, python-google-cloud-audit-log, python-google-cloud-build, python-google-cloud-compute, python-google-cloud-core, python-google-cloud-dns, python-google-cloud-domains, python-google-cloud-iam, python-google-cloud-kms, python-google-cloud-kms-inventory, python-google-cloud-logging, python-google-cloud-run, python-google-cloud-secret-manager, python-google-cloud-service-directory, python-google-cloud-spanner, python-google-cloud-storage, python-google-cloud-vpc-access, python-google-crc32c, python-google-resumable-media, python-googleapis-common-protos, python-grpc-google-iam-v1, python-grpc-interceptor, python-mmh3, python-mypy, python-opentelemetry-resourcedetector-gcp, python-poetry-core, python-proto-plus, python-pytest-asyncio, python-syrupy, python-typed-ast, python-uritemplate, python-dnspython, python-trio, python-websocket-client
This update for python-aioresponses, python-google-api-core, python-google-api-python-client, python-google-auth, python-google-auth-httplib2, python-google-cloud-appengine-logging, python-google-cloud-artifact-registry, python-google-cloud-audit-log, python-google-cloud-build, python-google-cloud-compute, python-google-cloud-core, python-google-cloud-dns, python-google-cloud-domains, python-google-cloud-iam, python-google-cloud-kms, python-google-cloud-kms-inventory, python-google-cloud-logging, python-google-cloud-run, python-google-cloud-secret-manager, python-google-cloud-service-directory, python-google-cloud-spanner, python-google-cloud-storage, python-google-cloud-vpc-access, python-google-crc32c, python-google-resumable-media, python-googleapis-common-protos, python-grpc-google-iam-v1, python-grpc-interceptor, python-mmh3, python-mypy, python-opentelemetry-resourcedetector-gcp, python-poetry-core, python-proto-plus, python-pytest-asyncio, python-syrupy, python-typed-ast, python-uritemplate, python-dnspython, python-trio, python-websocket-client fixes the following issues:
Changes in python-aioresponses:
- Switch to pyproject macros.
- Update to 0.7.8
- feat: integer repeat
- fix: case repeat=1
- docs: elaborate on meaning in documentation of repeat argument
- use ClientSession base_url and headers
- Refactor usage of session base_url and headers
- Add tests for base_url and headers from session
- Add __repr__ to RequestMatch
- Upgrade yarl to be compatible with Python 3.12
- fix: review suggestion
- fix: fix test
- fix: added condition on py3.8 while supporting ClientSession.base_url
- fix: flake8
- from version 0.7.7
- added passthrough_unmatched flag for aioresponses class
- test for passing unmatched requests
- add a readme description about passthrough_unmatched flag
- feat: support raise_for_status as callable
- Add packaging to requirements.txt
- Update `
__version__` to latest released version - Fix compat with aiohttp 3.11.0+
- fix: invalid rst code
- Add test_pass_through_unmatched_requests to skipped tests
- Update Requires from requirements.txt
- Add %{?sle15_python_module_pythons}
- update to 0.7.6:
- refactor: Make mock for writer compatible with 3.9.0b1 and
older
- fix: aiohttp 3.9 \_writer can't await
- update to 0.7.5:
- replaced pkg\_resources with packaging module
- Add Python 3.11 support
- update to 0.7.4:
- bump py36 to ubuntu 20.04
- restore 3.6
- Adjust github actions test workflow
- Fix python versions in env list
- Add documentation for repeat argument
- Add compat module
- fix long line by adding line breaks
- shorten comment to obey line length limit
- split typing and assignment to avoid long line
- Avoid type confusion by explicitly typing as \
ClientResponse\ - ignore false positive mypy warning when \
url\_or\_pattern\is a
\Pattern\
- add \
py.typed\to MANIFEST.in - add \
py.typed\file to package data in setup.py - fix version after release was tagged/released
- Extend for arguments
- Init assert\_called
- Fix type annotations
- update to 0.7.3:
- Support binary bodies in responses
- fix flake8
- move RequestInfo to compat
- drop \
.travis.yml\ - basic CI using github actions
- (feat) add unit tests
- (feat) allow for callbacks to be called before raising of exception
- add \
py.typed\(PEP 561) - Fix setuptools warnings by replacing dashes in keys with underscores
- fix version parsing
- version 0.7.2
- Update aioresponses/core.py
- adding catch to ignore ValueError when deepcopy is unsuccessful
- Remove unused patch.
- Update to v0.7.1
- Fix compatibility with aiohttp 3.7
- remove asynctest from compat.py
- Python 3.9 compatibility
- drop patch merged upstream
- fix python version requirement, require asynctest for python36
again
- Remove no longer necessary aioresp
Affected software
SUSE-RU-2026:2816-1 is recorded against 28 packages.
- python-google-api-core (fixed in 2.28.0-150400.5.9.2)
- python-google-auth (fixed in 2.47.0-150400.6.12.2)
- python-google-cloud-appengine-logging (fixed in 1.8.0-150400.9.8.2)
- python-google-cloud-artifact-registry (fixed in 1.19.0-150400.9.8.2)
- python-google-cloud-audit-log (fixed in 0.4.0-150400.9.8.1)
- python-google-cloud-build (fixed in 3.35.0-150400.9.8.2)
- python-google-cloud-compute (fixed in 1.42.0-150400.9.11.2)
- python-google-cloud-core (fixed in 2.5.0-150400.5.9.2)
- python-google-cloud-dns (fixed in 0.36.0-150400.9.8.2)
- python-google-cloud-domains (fixed in 1.12.0-150400.9.8.2)
- python-google-cloud-iam (fixed in 2.21.0-150400.9.11.2)
- python-google-cloud-kms (fixed in 3.9.0-150400.9.8.2)
- python-google-cloud-kms-inventory (fixed in 0.4.0-150400.9.8.2)
- python-google-cloud-logging (fixed in 3.13.0-150400.9.8.2)
- python-google-cloud-run (fixed in 0.14.0-150400.9.8.2)
- python-google-cloud-secret-manager (fixed in 2.26.0-150400.9.8.2)
- python-google-cloud-service-directory (fixed in 1.16.0-150400.9.8.2)
- python-google-cloud-spanner (fixed in 3.58.0-150400.9.8.1)
- python-google-cloud-storage (fixed in 3.8.0-150400.10.9.2)
- python-google-cloud-vpc-access (fixed in 1.15.0-150400.9.8.2)
- python-google-crc32c (fixed in 1.8.0-150400.9.8.2)
- python-google-resumable-media (fixed in 2.8.0-150400.10.9.2)
- python-googleapis-common-protos (fixed in 1.72.0-150400.10.9.2)
- python-grpc-google-iam-v1 (fixed in 0.14.3-150400.9.6.2)
Show the remaining 4 packages
- python-grpc-interceptor (fixed in 0.15.4-150400.9.4.1)
- python-grpcio (fixed in 1.60.1-150600.16.10.1)
- python-proto-plus (fixed in 1.26.1-150400.9.6.2)
- python-pytest-asyncio (fixed in 1.0.0-150400.10.6.2)
Timeline and source
Published on 9 July 2026 and last revised on 10 July 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.
References
www.suse.com (Advisory)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
www.suse.com (Web)
Details
Affected Packages
| Software | From version | Fixed in |
|---|---|---|
| python-google-api-core | — | 2.28.0-150400.5.9.2 |
| python-google-auth | — | 2.47.0-150400.6.12.2 |
| python-google-cloud-appengine-logging | — | 1.8.0-150400.9.8.2 |
| python-google-cloud-artifact-registry | — | 1.19.0-150400.9.8.2 |
| python-google-cloud-audit-log | — | 0.4.0-150400.9.8.1 |
| python-google-cloud-build | — | 3.35.0-150400.9.8.2 |
| python-google-cloud-compute | — | 1.42.0-150400.9.11.2 |
| python-google-cloud-core | — | 2.5.0-150400.5.9.2 |
| python-google-cloud-dns | — | 0.36.0-150400.9.8.2 |
| python-google-cloud-domains | — | 1.12.0-150400.9.8.2 |
| python-google-cloud-iam | — | 2.21.0-150400.9.11.2 |
| python-google-cloud-kms | — | 3.9.0-150400.9.8.2 |
| python-google-cloud-kms-inventory | — | 0.4.0-150400.9.8.2 |
| python-google-cloud-logging | — | 3.13.0-150400.9.8.2 |
| python-google-cloud-run | — | 0.14.0-150400.9.8.2 |
| python-google-cloud-secret-manager | — | 2.26.0-150400.9.8.2 |
| python-google-cloud-service-directory | — | 1.16.0-150400.9.8.2 |
| python-google-cloud-spanner | — | 3.58.0-150400.9.8.1 |
| python-google-cloud-storage | — | 3.8.0-150400.10.9.2 |
| python-google-cloud-vpc-access | — | 1.15.0-150400.9.8.2 |
| python-google-crc32c | — | 1.8.0-150400.9.8.2 |
| python-google-resumable-media | — | 2.8.0-150400.10.9.2 |
| python-googleapis-common-protos | — | 1.72.0-150400.10.9.2 |
| python-grpc-google-iam-v1 | — | 0.14.3-150400.9.6.2 |
| python-grpc-interceptor | — | 0.15.4-150400.9.4.1 |
| python-grpcio | — | 1.60.1-150600.16.10.1 |
| python-proto-plus | — | 1.26.1-150400.9.6.2 |
| python-pytest-asyncio | — | 1.0.0-150400.10.6.2 |
References
Similar Threats
- Unknown SUSE-RU-2024:1637-2
- Unknown SUSE-RU-2024:1637-1
- Unknown SUSE-SU-2023:2783-1
Free Vulnerability Check
Is your site affected by SUSE-RU-2026:2816-1?
BotEraser helps you identify potentially vulnerable plugins and themes by checking your installation against SUSE-RU-2026:2816-1 and other known CVE records.
Scan My Site Free →No credit card required · Results in minutes
ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.