[Git][security-tracker-team/security-tracker][master] Add two golang-google-grpc issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Sep 1 20:26:56 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
c3f68867 by Salvatore Bonaccorso at 2026-09-01T21:26:26+02:00
Add two golang-google-grpc issues

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -19,9 +19,19 @@ CVE-2026-84305 (sqlparse is a non-validating SQL parser module for Python. Prior
 	NOTE: https://github.com/andialbrecht/sqlparse/security/advisories/GHSA-cfqr-cjx5-5jcm
 	NOTE: Fixed by: https://github.com/andialbrecht/sqlparse/commit/a51df6d9e2d31b44be9adb6bc8732517db6bf96b (0.6.0)
 CVE-2026-84304 (gRPC-Go is the Go language implementation of gRPC. Prior to 1.83.1, in ...)
-	TODO: check
+	- golang-google-grpc <unfixed>
+	NOTE: https://github.com/grpc/grpc-go/security/advisories/GHSA-vp52-pcj8-j9qc
+	NOTE: https://github.com/grpc/grpc-go/pull/9331
+	NOTE: Fixed by: https://github.com/grpc/grpc-go/commit/7354d9c8debb4bcf2225bf429857078de310c176 (master)
+	NOTE: https://github.com/grpc/grpc-go/pull/9333 (v1.83.x backport)
+	NOTE: Fixed by: https://github.com/grpc/grpc-go/commit/8cfeca0e1ee5ea0980dcc320e20240fa1079ec77 (v1.83.1)
 CVE-2026-84303 (gRPC-Go is the Go language implementation of gRPC. Prior to 1.83.1, th ...)
-	TODO: check
+	- golang-google-grpc <unfixed>
+	NOTE: https://github.com/grpc/grpc-go/security/advisories/GHSA-qc2q-p7wx-3px3
+	NOTE: https://github.com/grpc/grpc-go/pull/9332
+	NOTE: Fixed by: https://github.com/grpc/grpc-go/commit/db9482836c298f234c896cf82ab68cafc78237f8 (master)
+	NOTE: https://github.com/grpc/grpc-go/pull/9335 (v1.83.x backport)
+	NOTE: Fixed by: https://github.com/grpc/grpc-go/commit/ebba6f3f1b206e2b4dc4d1d5a96d18430302c2fe (v1.83.1)
 CVE-2026-84270 (A flaw was found in the MTP backend in gvfs. When reading a file from  ...)
 	TODO: check
 CVE-2026-84269 (A flaw was found in the AFP backend in gvfs. When mounting a share, a  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c3f68867af1fc94d6924043c299c4d22f84081dd

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c3f68867af1fc94d6924043c299c4d22f84081dd
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260901/6897e5fa/attachment.htm>


More information about the debian-security-tracker-commits mailing list