File _patchinfo of Package patchinfo.33601
<patchinfo incident="33601">
<issue tracker="jsc" id="PED-6697"/>
<issue tracker="jsc" id="PED-7987"/>
<issue tracker="cve" id="2023-30608"/>
<issue tracker="bnc" id="1210617">VUL-0: CVE-2023-30608: python-sqlparse: regular expression vulnerability</issue>
<packager>rjschwei</packager>
<rating>moderate</rating>
<category>recommended</category>
<summary>Recommended update for google-cloud SDK</summary>
<description>This update for google-cloud SDK fixes the following issues:
- Add python311 cloud services packages and dependencies (jsc#PED-7987, jsc#PED-6697)
- Bellow 5 binaries Obsolete the python3.6 counterpart:
python311-google-resumable-media
python311-google-api-core
python311-google-cloud-storage
python311-google-cloud-core
python311-googleapis-common-protos
- Regular python311 updates (without Obsoletes):
python-google-auth
python-grpcio
python-sqlparse
- New python311 packages:
libcrc32c
python-google-cloud-appengine-logging
python-google-cloud-artifact-registry
python-google-cloud-audit-log
python-google-cloud-build
python-google-cloud-compute
python-google-cloud-dns
python-google-cloud-domains
python-google-cloud-iam
python-google-cloud-kms-inventory
python-google-cloud-kms
python-google-cloud-logging
python-google-cloud-run
python-google-cloud-secret-manager
python-google-cloud-service-directory
python-google-cloud-spanner
python-google-cloud-vpc-access
python-google-crc32c
python-grpc-google-iam-v1
python-grpcio-status
python-proto-plus
In python-sqlparse this security issue was fixed:
CVE-2023-30608: Fixed parser that contained a regular expression that is vulnerable to ReDOS (Regular Expression Denial of Service) (bsc#1210617)
</description>
</patchinfo>