GCP Release Note: July 21, 2025

GCP Release Note: July 21, 2025

Access Transparency

Feature

Access Transparency supports BigQuery data preparation in the GA stage.

BigQuery

Libraries

A weekly digest of client library updates from across the Cloud SDK.

Java

Changes for google-cloud-bigquery

2.53.0 (2025-07-14)

Features
  • bigquery: Add OpenTelemetry support to BigQuery rpcs (#3860) (e2d23c1)
  • bigquery: Add support for custom timezones and timestamps (#3859) (e5467c9)
  • Next release from main branch is 2.53.0 (#3879) (c47a062)
Bug Fixes
  • Load jobs preserve ascii control characters configuration (#3876) (5cfdf85)
Dependencies
  • Update dependency com.google.api.grpc:proto-google-cloud-bigqueryconnection-v1 to v2.69.0 (#3870) (a7f1007)
  • Update dependency com.google.apis:google-api-services-bigquery to v2-rev20250615-2.0.0 (#3872) (f081589)
  • Update dependency com.google.cloud:sdk-platform-java-config to v3.50.1 (#3878) (0e971b8)
Documentation

Python

Changes for google-cloud-bigquery

3.35.0 (2025-07-15)

Features
  • Add null_markers property to LoadJobConfig and CSVOptions (#2239) (289446d)
  • Add total slot ms to RowIterator (#2233) (d44bf02)
  • Add UpdateMode to update_dataset (#2204) (eb9c2af)
  • Adds dataset_view parameter to get_dataset method (#2198) (28a5750)
  • Adds date_format to load job and external config (#2231) (7d31828)
  • Adds datetime_format as an option (#2236) (54d3dc6)
  • Adds source_column_match and associated tests (#2227) (6d5d236)
  • Adds time_format and timestamp_format and associated tests (#2238) (371ad29)
  • Adds time_zone to external config and load job (#2229) (b2300d0)
Bug Fixes
  • Adds magics.context.project to eliminate issues with unit tests … (#2228) (27ff3a8)
  • Fix rows returned when both start_index and page_size are provided (#2181) (45643a2)
  • Make AccessEntry equality consistent with from_api_repr (#2218) (4941de4)
  • Update type hints for various BigQuery files (#2206) (b863291)
Documentation
  • Improve clarity of “Output Only” fields in Dataset class (#2201) (bd5aba8)

Feature

You can now use the DISTINCT pipe operator to select distinct rows from a table in your pipe syntax queries. This feature is generally available (GA).

Bigtable

Libraries

A weekly digest of client library updates from across the Cloud SDK.

Java

Changes for google-cloud-bigtable

2.62.0 (2025-07-15)

Features
  • Add Idempotency to Cloud Bigtable MutateRowRequest API (b5acca6)
  • Add SchemaBundles API (b5acca6)
  • bigtable: Add schema bundle support (#2619) (7d7b9a9)
  • Next release from main branch is 2.62.0 (#2621) (202b211)
Dependencies

Cloud Service Mesh

Changed

Managed Cloud Service Mesh will start using proxy version csm_mesh_proxy.20250623b_RC00 for Gateway API on GKE clusters. This proxy version maps closest to Envoy version 1.35. This change is rolling out to all release channels.

Compute Engine

Feature

Generally available: The general-purpose C4D machine series offers the following bare metal machine types:

  • c4d-standard-384-metal
  • c4d-highcpu-384-metal
  • c4d-highmem-384-metal

This is the first machine series to offer AMD-based bare metal instances. Bare metal instances let you create an instance with direct access to the machine’s CPU and memory, without a virtualization layer in the middle. C4D uses Titanium to deliver more compute and memory resources for your workloads by offloading network and I/O processing from the host hardware. To learn more, see C4D machine series. For information about bare metal instances, including regional availability, see Bare metal instances on Compute Engine.

Container Optimized OS

Changed

cos-109-17800-570-5

Kernel Docker Containerd GPU Drivers
COS-6.1.143 v24.0.9 v1.7.27 See List

Announcement

This is an LTS Refresh release.

Changed

Updated the NVIDIA GPU driver policy for New Feature Branch (NFB) drivers. The LATEST tag has been updated to point to the stable 570.133.20 Production Branch. The 575.57.08 NFB driver remains available for development and testing but must now be selected by its specific version number.

Fixed

Upgraded app-admin/google-guest-configs to v20250516.00.

Fixed

Upgraded app-containers/docker-credential-helpers to v0.9.3.

Fixed

Updated app-misc/jq to v1.8.1.

Fixed

Upgraded net-fs/cifs-utils to v7.4.

Fixed

Upgraded sys-libs/libcap to v2.76.

Fixed

Upgraded dev-db/sqlite to v3.50.1.

Fixed

Upgraded app-arch/unzip to v6.0_p29.

Fixed

Upgraded app-arch/gzip to v1.14.

Fixed

Fixed an issue where some workloads could cause a full
system hang when running close to their memory limit.

Fixed

Upgraded sys-libs/talloc to v2.4.3.

Changed

Runtime sysctl changes:

  • Changed: fs.file-max: 812258 -> 812234

Security

Fixed KCTF-103406b in the Linux kernel

Changed

cos-121-18867-90-97

Kernel Docker Containerd GPU Drivers
COS-6.6.93 v27.5.1 v2.0.4 See List

Changed

Updated the NVIDIA GPU driver policy for New Feature Branch (NFB) drivers. The LATEST tag has been updated to point to the stable 570.133.20 Production Branch. The 575.57.08 NFB driver remains available for development and testing but must now be selected by its specific version number. Removed 575.57.08 NFB driver support for NVIDIA_GB200 machine.

Feature

Added ARM support for the Lustre 2.14.0 drivers.

Fixed

Fixed an issue where some workloads could cause a full
system hang when running close to their memory limit.

Security

Fixed CVE-2024-6174 and CVE-2024-11584 in cloud-init.

Security

Fixed KCTF-103406b in the Linux kernel.

Changed

Runtime sysctl changes:

  • Changed: fs.file-max: 811807 -> 811784

Changed

cos-117-18613-263-75

Kernel Docker Containerd GPU Drivers
COS-6.6.93 v24.0.9 v1.7.27 See List

Changed

Updated the NVIDIA GPU driver policy for New Feature Branch (NFB) drivers. The LATEST tag has been updated to point to the stable 570.133.20 Production Branch. The 575.57.08 NFB driver remains available for development and testing but must now be selected by its specific version number. Removed 575.57.08 NFB driver support for NVIDIA_GB200 machine.

Feature

Added ARM support for the Lustre 2.14.0 drivers.

Fixed

Fixed an issue where some workloads could cause a full
system hang when running close to their memory limit.

Security

Fixed KCTF-103406b in the Linux kernel.

Changed

Runtime sysctl changes:

  • Changed: fs.file-max: 811784 -> 811820

Changed

cos-113-18244-382-65

Kernel Docker Containerd GPU Drivers
COS-6.1.141 v24.0.9 v1.7.27 See List

Changed

Updated the NVIDIA GPU driver policy for New Feature Branch (NFB) drivers. The LATEST tag has been updated to point to the stable 570.133.20 Production Branch. The 575.57.08 NFB driver remains available for development and testing but must now be selected by its specific version number.

Fixed

Fixed an issue where some workloads could cause a full
system hang when running close to their memory limit.

Security

Fixed KCTF-103406b in the Linux kernel.

Changed

Runtime sysctl changes:

  • Changed: fs.file-max: 812031 -> 811983

Google Distributed Cloud (software only) for VMware

Announcement

Google Distributed Cloud (software only) for VMware 1.30.1100-gke.67 is now available for download. To upgrade, see Upgrade a cluster. Google Distributed Cloud 1.30.1100-gke.67 runs on Kubernetes v1.30.12-gke.800.

If you are using a third-party storage vendor, check the GDC Ready storage partners document to make sure the storage vendor has already passed the qualification for this release.

After a release, it takes approximately 7 to 14 days for the version to become available for use with GKE On-Prem API clients: the Google Cloud console, the gcloud CLI, and Terraform.

Fixed

The following issues were fixed in 1.30.1100-gke.67:

Google Distributed Cloud (software only) for bare metal

Announcement

Google Distributed Cloud for bare metal 1.30.1100-gke.67 is now available for download. To upgrade, see Upgrade clusters. Google Distributed Cloud for bare metal 1.30.1100-gke.67 runs on Kubernetes v1.30.12-gke.800.

After a release, it takes approximately 7 to 14 days for the version to become available for installations or upgrades with the GKE On-Prem API clients: the Google Cloud console, the gcloud CLI, and Terraform.

If you use a third-party storage vendor, check the Ready storage partners document to make sure the storage vendor has already passed the qualification for this release of Google Distributed Cloud for bare metal.

Fixed

The following issues were fixed in 1.30.1100-gke.67:

Issue

For information about the latest known issues, see Google Distributed Cloud for bare metal known issues in the Troubleshooting section.

Google Kubernetes Engine

Feature

In GKE version 1.33.2-gke.1111000 and later, you can use compute classes to set
Kubernetes labels
on all nodes that are created for that compute class. These labels are applied
to the corresponding Node objects in the Kubernetes API. For more information
about setting node labels in compute classes, see the
ComputeClass custom resource definition.

Feature

In GKE version 1.33.2-gke.1111000 and later, you can use compute classes to set
Kubernetes labels
on all nodes that are created for that compute class. These labels are applied
to the corresponding Node objects in the Kubernetes API. For more information
about setting node labels in compute classes, see the
ComputeClass custom resource definition.

Google SecOps

Feature

New parser documentation now available

New parser documentation is available to help you ingest and normalize logs from the following sources:

Collect Apache Tomcat logs

Collect Appian Cloud logs

Collect Archer IRM logs

Collect ArcSight CEF logs

Collect Area 1 logs

Collect Aruba EdgeConnect SD-WAN logs

Collect Atlassian Cloud Admin Audit logs

Collect Avatier logs

Collect Avigilon Access Control Manager logs

Collect AWS CloudTrail logs

Collect Barracuda CloudGen Firewall logs

Collect Barracuda Web Filter logs

Collect Broadcom CA PAM logs

Collect Broadcom SSL VA logs

Collect Cato Networks logs

Collect Check Point Harmony logs

Collect CipherTrust Manager logs

Collect Cisco VCS logs

Collect Cisco VPN logs

Collect Cisco WSA logs

Collect CyberArk Privilege Cloud logs

Collect Digi Modems logs

Collect F5 DNS logs

Collect F5 VPN logs

Collect Forcepoint CASB logs

Collect HPE BladeSystem c7000 logs

Collect Skyhigh Security logs

Collect Trellix IPS logs

Google SecOps SIEM

Feature

New parser documentation now available

New parser documentation is available to help you ingest and normalize logs from the following sources:

Collect Apache Tomcat logs

Collect Appian Cloud logs

Collect Archer IRM logs

Collect ArcSight CEF logs

Collect Area 1 logs

Collect Aruba EdgeConnect SD-WAN logs

Collect Atlassian Cloud Admin Audit logs

Collect Avatier logs

Collect Avigilon Access Control Manager logs

Collect AWS CloudTrail logs

Collect Barracuda CloudGen Firewall logs

Collect Barracuda Web Filter logs

Collect Broadcom CA PAM logs

Collect Broadcom SSL VA logs

Collect Cato Networks logs

Collect Check Point Harmony logs

Collect CipherTrust Manager logs

Collect Cisco VCS logs

Collect Cisco VPN logs

Collect Cisco WSA logs

Collect CyberArk Privilege Cloud logs

Collect Digi Modems logs

Collect F5 DNS logs

Collect F5 VPN logs

Collect Forcepoint CASB logs

Collect HPE BladeSystem c7000 logs

Collect Skyhigh Security logs

Collect Trellix IPS logs

Identity and Access Management

Feature

You can ask Gemini for predefined role suggestions using the IAM role picker in the Google Cloud Console. This feature is in preview.

For more information, see Get predefined role suggestions with Gemini assistance.

Pub/Sub

Libraries

A weekly digest of client library updates from across the Cloud SDK.

Go

Changes for pubsub/apiv1

2.0.0 (2025-07-16)

To migrate from the v1 cloud.google.com/go/pubsub, please follow the migration guide

Features
  • pubsub/v2: Add MessageTransformationFailureReason to IngestionFailureEvent (208745b)
  • pubsub/v2: Add new v2 library (#12218) (c798f62)
  • pubsub/v2: Add SchemaViolationReason to IngestionFailureEvent (d8ae687)
  • pubsub/v2: Generate renamed go pubsub admin clients (a95a0bf)
  • pubsub/v2: Release 2.0.0 (#12568) (704efce)
Documentation
  • pubsub/v2: Document that the acknowledge_confirmation and modify_ack_deadline_confirmation fields in message .google.pubsub.v1.StreamingPullResponse are not guaranteed to be populated (208745b)
  • pubsub/v2: Standardize spelling of “acknowledgment” in Pub/Sub protos (d8ae687)
  • pubsub/v2: Update v2 package docs with migration guide (#12564) (5ef6068)

Java

Changes for google-cloud-pubsub

1.141.0 (2025-07-11)

Features
  • Add MessageTransformationFailureReason to IngestionFailureEvent (8271399)
  • Next release from main branch is 1.141.0 (#2481) (bd9f385)
Bug Fixes
  • deps: Update the Java code generator (gapic-generator-java) to 2.60.1 (c9ef2cd)
Dependencies
  • Update dependency com.google.cloud:google-cloud-bigquery to v2.52.0 (#2467) (fe08a6f)
  • Update dependency com.google.cloud:google-cloud-core to v2.58.1 (#2476) (96a2354)
  • Update dependency com.google.cloud:google-cloud-storage to v2.53.2 (#2469) (fa51a01)
  • Update dependency com.google.cloud:sdk-platform-java-config to v3.50.1 (#2477) (e1657cb)
  • Update googleapis/sdk-platform-java action to v2.60.0 (#2471) (2b0e8e0)
  • Update googleapis/sdk-platform-java action to v2.60.1 (#2475) (e7c0b5d)

Security Command Center

Changed

The Aggregations panel on the Findings page in Security Command Center Enterprise has been enhanced and is now called Quick Filters. For information about filtering results on the Findings page, see Review and manage findings.

Source: Google Cloud Platform

Latest Posts

Pass It On
Leave a Comment

Comments

No comments yet. Why don’t you start the discussion?

Leave a Reply

Your email address will not be published. Required fields are marked *