Skip to content

CVE-2026-33186: Bump google.golang.org/grpc to 1.79.3#101

Merged
openshift-merge-bot[bot] merged 1 commit intoopenshift-virtualization:mainfrom
sbiradar10:CVE-2026-33186-main
Mar 30, 2026
Merged

CVE-2026-33186: Bump google.golang.org/grpc to 1.79.3#101
openshift-merge-bot[bot] merged 1 commit intoopenshift-virtualization:mainfrom
sbiradar10:CVE-2026-33186-main

Conversation

@sbiradar10
Copy link
Copy Markdown
Contributor

This PR covers google.golang.org/grpc bump to 1.79.3 for CVE-2026-33186 CVE.

Before it was 1.64.1 and bump to 1.79.3

CVE: GHSA-p77j-4mvh-x3m3

Trackers opened from CNV 4.21 but without bumping in main, cant bump in release-4.21. so opened this PR for main.

@sbiradar10 sbiradar10 force-pushed the CVE-2026-33186-main branch from e5ee029 to 79dda59 Compare March 30, 2026 14:37
@sbiradar10
Copy link
Copy Markdown
Contributor Author

sbiradar10 commented Mar 30, 2026

/assign enp0s3

Assigned to you as your approval is needed for this.

@enp0s3
Copy link
Copy Markdown
Member

enp0s3 commented Mar 30, 2026

/approve

@sbiradar10 Thank you!

@openshift-ci
Copy link
Copy Markdown

openshift-ci bot commented Mar 30, 2026

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: enp0s3

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Details Needs approval from an approver in each of these files:

Approvers can indicate their approval by writing /approve in a comment
Approvers can cancel approval by writing /approve cancel in a comment

@sbiradar10
Copy link
Copy Markdown
Contributor Author

hey @enp0s3 Thank you for approving.
can you please me with reviewer?
merging is blocked as 1 review is needed, but i dont know who will be the reviewer?

Copy link
Copy Markdown
Member

@Barakmor1 Barakmor1 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thank you!

@openshift-ci openshift-ci bot added the lgtm label Mar 30, 2026
@openshift-merge-bot openshift-merge-bot bot merged commit a5eb1ff into openshift-virtualization:main Mar 30, 2026
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants