This update for google-osconfig-agent fixes the following issue:
CVE-2026-63209: github.com/klauspost/compress: signed integer overflow in s2.NewDict() allows an attacker to bypass
repeat index validation and cause a process crash (bsc#1283672).
Changes for google-osconfig-agent:
Update to version 20260928.01
scalibr linux new metadata support (#1038)
Fix failing to report REBOOTING state during postPatchReboot
due to context canceled for Windows VMs (#1055)
Fix os/snap extractor usage (#1053)
Update github.com/klauspost/compress to v1.18.7
(bsc#1283672, CVE-2026-63209)
bump grpc package to new version (#1057)
bump some dependencies across few modules (#1056)
Update github.com/klauspost/compress to v1.18.7
(bsc#1283672, CVE-2026-63209)