Re: [grpc-io] gRPC Kotlin missing active maintainers

2025-02-25 Thread 'Louis Wasserman' via grpc.io
Our current planning suggests that I'll be able to give this considerable attention later in the year, but of course that isn't the same thing as sustained maintenance. With that said, I would strongly prefer not to add any features to gRPC-Kotlin that are absent in gRPC-Java, to prevent future

Re: [grpc-io] gRPC Kotlin missing active maintainers

2025-02-25 Thread 'Eric Anderson' via grpc.io
On Tue, Feb 25, 2025 at 12:39 PM 'Louis Wasserman' via grpc.io < grpc-io@googlegroups.com> wrote: > With that said, I would strongly prefer not to add any features to > gRPC-Kotlin that are absent in gRPC-Java, to prevent future > incompatibilities if gRPC-Java adds the same features in a differen

[grpc-io] CVE-2024-25629

2025-02-25 Thread Aleksander Sajber
Hello, gRPC is currently using a vulnerable version of c-ares (1.19.1), as noted in CVE-2024-25629 . 1. Is gRPC affected by CVE-2024-25629? 2. Is there a plan to upgrade c-ares? Regards, Aleksander Sajber -- You received this message