Security update for python-arcomplete, python-Fabric, python-PyGithub, python-antlr4-python3-runtime, python-avro, python-chardet, python-distro, python-docker, python-fakeredis, python-fixedint, python-httplib2, python-httpretty, python-javaproperties, python-jsondiff, python-knack, python-marshmallow, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-opentelemetry-sdk, python-opentelemetry-semantic-conventions, python-opentelemetry-test-utils, python-pycomposefile, python-pydash, python-redis, python-retrying, python-semver, python-sshtunnel, python-strictyaml, python-sure, python-vcrpy, python-xmltodict
This update for python-argcomplete, python-Fabric, python-PyGithub, python-antlr4-python3-runtime, python-avro, python-chardet, python-distro, python-docker, python-fakeredis, python-fixedint, python-httplib2, python-httpretty, python-javaproperties, python-jsondiff, python-knack, python-marshmallow, python-opencensus, python-opencensus-context, python-opencensus-ext-threading, python-opentelemetry-api, python-opentelemetry-sdk, python-opentelemetry-semantic-conventions, python-opentelemetry-test-utils, python-pycomposefile, python-pydash, python-redis, python-retrying, python-semver, python-sshtunnel, python-strictyaml, python-sure, python-vcrpy, python-xmltodict contains the following fixes:
Changes in python-argcomplete
This update is required to use argcomplete on Python 3.11.9+ or
3.12.3+.
zsh completion module (#475)
behavior to be overridden in subclasses (#471)
Changes in python-Fabric:
*[Bug]: fabric.runners.Remote failed to properly deregister its SIGWINCH signal
handler on shutdown; in rare situations this could cause tracebacks when
the Python process receives SIGWINCH while no remote session is active.
This has been fixed.
unrecoverable tracebacks when invoked from inside a thread (such as
the use of fabric.group.ThreadingGroup) under certain interpreter versions.
This has been fixed by simply refusing to register signal handlers when not
in the main thread. Thanks to Francesco Giordano and others for the reports.
specification (it was still in our development dependencies). This has been fixed.
Backwards-compatibly merged the functionality of MockSFTP into MockRemote (may be
opted-into by instantiating the latter with enable_sftp=True) so you can mock
out both SSH and SFTP functionality in the same test, which was previously impossible.
It also means you can use this in a Pytest autouse fixture to prevent any tests
from accidentally hitting the network!
A new pytest fixture, remote_with_sftp, has been added which leverages the previous
bullet point (an all-in-one fixture suitable for, eg, preventing any incidental
ssh/sftp attempts during test execution).
A pile of documentation and test enhancements (yes, testing our testing helpers is a thing).
(with the few actual API members using the term now marked deprecated & new ones added
in the meantime, mostly in fabric.testing).
to connect to your local SSH agent and print a key list, similarly to ssh-add -l.
This is mostly useful for expectations-checking Fabric and Paramiko’s agent
functionality, or for situations where you might not have ssh-add handy.
SUSE-SU-2024:1639-1 is recorded against 76 packages.
Published on 1 July 2024 and last revised on 23 March 2026. No public exploit is currently recorded for this entry. Record sourced from OSV.
www.suse.com (Advisory)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
bugzilla.suse.com (Report)
www.suse.com (Web)
www.suse.com (Web)
Details
Affected Packages
| Software | From version | Fixed in |
|---|---|---|
| python-aiohttp | — | 3.9.3-150400.10.18.4 |
| python-aiosignal | — | 1.3.1-150400.9.7.2 |
| python-antlr4-python3-runtime | — | 4.13.1-150400.10.4.1 |
| python-argcomplete | — | 3.3.0-150400.12.12.2 |
| python-asgiref | — | 3.6.0-150400.9.7.3 |
| python-async-timeout | — | 4.0.2-150400.10.7.2 |
| python-automat | — | 22.10.0-150400.3.7.2 |
| python-avro | — | 1.11.3-150400.10.4.1 |
| python-blinker | — | 1.6.2-150400.12.7.4 |
| python-chardet | — | 5.2.0-150400.13.7.2 |
| python-constantly | — | 15.1.0-150400.12.7.2 |
| python-decorator | — | 5.1.1-150400.12.7.4 |
| python-deprecated | — | 1.2.14-150400.10.7.2 |
| python-distro | — | 1.9.0-150400.12.4.1 |
| python-docker | — | 7.0.0-150400.8.4.4 |
| python-fabric | — | 3.2.2-150400.10.4.1 |
| python-fakeredis | — | 2.21.0-150400.9.3.4 |
| python-fixedint | — | 0.2.0-150400.9.3.1 |
| python-fluidity-sm | — | 0.2.0-150400.10.7.2 |
| python-frozenlist | — | 1.3.3-150400.9.7.2 |
| python-httplib2 | — | 0.22.0-150400.10.4.1 |
| python-httpretty | — | 1.1.4-150400.11.4.1 |
| python-humanfriendly | — | 10.0-150400.13.7.4 |
| python-hyperlink | — | 21.0.0-150400.12.7.4 |
| python-importlib-metadata | — | 6.8.0-150400.10.9.2 |
| python-incremental | — | 22.10.0-150400.3.7.2 |
| python-invoke | — | 2.1.2-150400.10.7.4 |
| python-isodate | — | 0.6.1-150400.12.7.2 |
| python-javaproperties | — | 0.8.1-150400.10.4.4 |
| python-jsondiff | — | 2.0.0-150400.10.4.1 |
| python-knack | — | 0.11.0-150400.10.4.4 |
| python-lexicon | — | 2.0.1-150400.10.7.1 |
| python-marshmallow | — | 3.20.2-150400.9.7.1 |
| python-multidict | — | 6.0.4-150400.7.7.4 |
| python-oauthlib | — | 3.2.2-150400.12.7.4 |
| python-opencensus | — | 0.11.4-150400.10.6.3 |
| python-opencensus-context | — | 0.1.3-150400.10.6.1 |
| python-opencensus-ext-threading | — | 0.1.2-150400.10.6.1 |
| python-opentelemetry-api | — | 1.23.0-150400.10.7.1 |
| python-opentelemetry-sdk | — | 1.23.0-150400.9.3.1 |
| python-opentelemetry-semantic-conventions | — | 0.44b0-150400.9.3.1 |
| python-opentelemetry-test-utils | — | 0.44b0-150400.9.3.1 |
| python-paramiko | — | 3.4.0-150400.13.10.4 |
| python-pathspec | — | 0.11.1-150400.9.7.2 |
| python-pip | — | 22.3.1-150400.17.16.4 |
| python-pkginfo | — | 1.9.6-150400.7.7.1 |
| python-portalocker | — | 2.7.0-150400.10.7.4 |
| python-psutil | — | 5.9.5-150400.6.9.4 |
| python-pycomposefile | — | 0.0.30-150400.9.3.1 |
| python-pydash | — | 6.0.2-150400.9.4.1 |
| python-pygithub | — | 1.57-150400.10.4.4 |
| python-pygments | — | 2.15.1-150400.7.7.4 |
| python-pyjwt | — | 2.8.0-150400.8.7.2 |
| python-pyparsing | — | 3.0.9-150400.5.7.4 |
| python-redis | — | 5.0.1-150400.12.4.4 |
| python-requests-oauthlib | — | 1.3.1-150400.12.7.1 |
| python-retrying | — | 1.3.4-150400.12.4.1 |
| python-scp | — | 0.14.5-150400.12.7.4 |
| python-semver | — | 3.0.2-150400.10.4.1 |
| python-service-identity | — | 23.1.0-150400.8.7.1 |
| python-sortedcontainers | — | 2.4.0-150400.8.7.4 |
| python-sshtunnel | — | 0.4.0-150400.5.4.4 |
| python-strictyaml | — | 1.7.3-150400.9.3.4 |
| python-sure | — | 2.0.1-150400.12.4.4 |
| python-tabulate | — | 0.9.0-150400.11.7.4 |
| python-tqdm | — | 4.66.1-150400.9.7.4 |
| python-twisted | — | 22.10.0-150400.5.17.4 |
| python-typing-extensions | — | 4.5.0-150400.3.9.1 |
| python-vcrpy | — | 6.0.1-150400.7.4.4 |
| python-websocket-client | — | 1.5.1-150400.13.7.1 |
| python-wheel | — | 0.40.0-150400.13.7.4 |
| python-wrapt | — | 1.15.0-150400.12.7.1 |
| python-xmltodict | — | 0.13.0-150400.12.4.1 |
| python-yarl | — | 1.9.2-150400.8.7.4 |
| python-zipp | — | 3.15.0-150400.10.7.1 |
| python-zope.interface | — | 6.0-150400.12.7.4 |
References
Similar Threats
Free Vulnerability Check
BotEraser helps you identify potentially vulnerable plugins and themes by checking your installation against SUSE-SU-2024:1639-1 and other known CVE records.
Scan My Site Free →No credit card required · Results in minutes
ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.
Stay up to date with the latest from Boteraser.
We use cookies to improve your experience on our site. By using our site, you consent to cookies.
Manage your cookie preferences below:
Essential cookies enable basic functions and are necessary for the proper function of the website.
CloudFlare provides web performance and security solutions, enhancing site speed and protecting against threats.
Service URL: developers.cloudflare.com (opens in a new window)
These cookies are needed for adding comments on this website.
These cookies are used for managing login functionality on this website.
Statistics cookies collect information anonymously. This information helps us understand how visitors use our website.
Google Analytics is a powerful tool that tracks and analyzes website traffic for informed marketing decisions.
Service URL: policies.google.com (opens in a new window)
You can find more information in our Cookie Policy and Privacy Policy.