{"schema_version":"1.7.5","id":"SUSE-SU-2026:21210-1","published":"2026-04-17T07:55:35Z","modified":"2026-04-22T18:26:18.006368Z","related":["CVE-2026-33186"],"upstream":["CVE-2026-33186"],"summary":"Security update for google-cloud-sap-agent","details":"This update for google-cloud-sap-agent fixes the following issue:\n\nUpdate to google-cloud-sap-agent 3.12 (bsc#1259816):\n\n- CVE-2026-33186: google.golang.org/grpc: authorization bypass due to improper validation of the HTTP/2: path pseudo-\n  header (bsc#1260265).\n\nChanges for google-cloud-sap-agent:\n\n * Collect WLM metric `saphanasr_angi_installed` for all OS types.\n * Failure handling: Remove attached disks from CG\n * OTE Status checks for Parameter Manager (SAP Agent)\n * Log command-line arguments in configureinstance.\n * Minor multiple reliability checks and fixes\n * Support custom names for restored disks in hanadiskrestore\n * Add newAttachedDisks to Restorer and detach them on restore failure.\n * Improve unit test coverage for hanadiskbackup and hanadiskrestore\n * Add support for refresh point tests.\n * Refactor HANA disk backup user validation and physical path parsing.\n * Auto updated compiled protocol buffers\n * Parameter Manager integration to SAP Agent\n * Modify collection logic for SAP HANA configuration files.\n * Update workloadagentplatform version and hash.\n * Update WLM Validation metrics to support SAPHanaSR-angi setups.\n * Increment agent version to 3.12.\n * SAP HANA Pacemaker failover settings can come from `SAPHanaController`.\n * Update collection for WLM metric `ha_sr_hook_configured`.\n * Refactor CheckTopology to accept instance number.\n * Use constant backoff with max retries for snapshot group operations.\n * Update workloadagentplatform dependency\n","affected":[{"package":{"name":"google-cloud-sap-agent","ecosystem":"SUSE:Linux Enterprise Server 16.0","purl":"pkg:rpm/suse/google-cloud-sap-agent&distro=SUSE%20Linux%20Enterprise%20Server%2016.0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.12-160000.1.1"}]}],"ecosystem_specific":{"binaries":[{"google-cloud-sap-agent":"3.12-160000.1.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:21210-1.json"}},{"package":{"name":"google-cloud-sap-agent","ecosystem":"SUSE:Linux Enterprise Server for SAP applications 16.0","purl":"pkg:rpm/suse/google-cloud-sap-agent&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20applications%2016.0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.12-160000.1.1"}]}],"ecosystem_specific":{"binaries":[{"google-cloud-sap-agent":"3.12-160000.1.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2026:21210-1.json"}}],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2026/suse-su-202621210-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1259816"},{"type":"REPORT","url":"https://bugzilla.suse.com/1260265"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-33186"}]}