[Git][security-tracker-team/security-tracker][master] Add CVE-2026-33186/golang-google-grpc

Salvatore Bonaccorso (@carnil) carnil at debian.org
Sat Mar 28 21:01:18 GMT 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
df6a35c2 by Salvatore Bonaccorso at 2026-03-28T22:00:55+01:00
Add CVE-2026-33186/golang-google-grpc

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -4749,7 +4749,8 @@ CVE-2026-33203 (SiYuan is a personal knowledge management system. Prior to versi
 CVE-2026-33194 (SiYuan is a personal knowledge management system. Prior to version 3.6 ...)
 	NOT-FOR-US: SiYuan
 CVE-2026-33186 (gRPC-Go is the Go language implementation of gRPC. Versions prior to 1 ...)
-	TODO: check
+	- golang-google-grpc <unfixed>
+	NOTE: https://github.com/grpc/grpc-go/security/advisories/GHSA-p77j-4mvh-x3m3
 CVE-2026-33180 (HAPI FHIR is a complete implementation of the HL7 FHIR standard for he ...)
 	NOT-FOR-US: HAPI FHIR
 CVE-2026-33179 (libfuse is the reference implementation of the Linux FUSE. From versio ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/df6a35c23e212c7370d3f27f78f81161194a9e2f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/df6a35c23e212c7370d3f27f78f81161194a9e2f
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260328/6b845e89/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list