This is an automated email from the ASF dual-hosted git repository.

zeroshade pushed a commit to branch main
in repository https://gitbox.apache.org/repos/asf/arrow-go.git


The following commit(s) were added to refs/heads/main by this push:
     new 03c07797 chore: Bump google.golang.org/grpc from 1.82.0 to 1.82.1 
(#965)
03c07797 is described below

commit 03c07797c37751601151fa9184a245aaadff1640
Author: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
AuthorDate: Wed Jul 22 10:45:42 2026 -0400

    chore: Bump google.golang.org/grpc from 1.82.0 to 1.82.1 (#965)
    
    Bumps [google.golang.org/grpc](https://github.com/grpc/grpc-go) from
    1.82.0 to 1.82.1.
    <details>
    <summary>Release notes</summary>
    <p><em>Sourced from <a
    href="https://github.com/grpc/grpc-go/releases";>google.golang.org/grpc's
    releases</a>.</em></p>
    <blockquote>
    <h2>Release 1.82.1</h2>
    <h1>Security</h1>
    <ul>
    <li>server: Stop reading from the connection when flooded by HTTP/2
    frames. The default value for this limit is 100 frames, excluding DATA
    and HEADERS, and may be changed by setting environment variable
    <code>GRPC_GO_EXPERIMENTAL_CONTROL_BUFFER_THROTTLE_LIMIT</code>.</li>
    <li>xds/rbac: Support <code>Metadata</code> and
    <code>RequestedServerName</code> permissions matcher fields. If present
    in a DENY rule, previously these would be ignored and fail-open.</li>
    <li>xds/rbac: Fix panic when parsing unsupported fields in
    <code>NotRule</code>/<code>NotId</code> permissions.</li>
    <li>xds/rbac: Support the deprecated <code>source_ip</code> principal
    identifier by treating it as equivalent to
    <code>direct_remote_ip</code>.</li>
    </ul>
    </blockquote>
    </details>
    <details>
    <summary>Commits</summary>
    <ul>
    <li><a
    
href="https://github.com/grpc/grpc-go/commit/ebd8f06a09426fbece97157c95c3917abff28f4e";><code>ebd8f06</code></a>
    Change version to 1.82.1 (<a
    href="https://redirect.github.com/grpc/grpc-go/issues/9238";>#9238</a>)</li>
    <li><a
    
href="https://github.com/grpc/grpc-go/commit/4ea465d4ab98013f72a142fe0fc89c19770b2935";><code>4ea465d</code></a>
    Cherry-pick commits (<a
    href="https://redirect.github.com/grpc/grpc-go/issues/9236";>#9236</a>)</li>
    <li><a
    
href="https://github.com/grpc/grpc-go/commit/9494a2cf32a0ec9d35420af401445ef3c9f66f05";><code>9494a2c</code></a>
    Change version to 1.82.1-dev (<a
    href="https://redirect.github.com/grpc/grpc-go/issues/9171";>#9171</a>)</li>
    <li>See full diff in <a
    href="https://github.com/grpc/grpc-go/compare/v1.82.0...v1.82.1";>compare
    view</a></li>
    </ul>
    </details>
    <br />
    
    
    [![Dependabot compatibility
    
score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=google.golang.org/grpc&package-manager=go_modules&previous-version=1.82.0&new-version=1.82.1)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
    
    Dependabot will resolve any conflicts with this PR as long as you don't
    alter it yourself. You can also trigger a rebase manually by commenting
    `@dependabot rebase`.
    
    [//]: # (dependabot-automerge-start)
    [//]: # (dependabot-automerge-end)
    
    ---
    
    <details>
    <summary>Dependabot commands and options</summary>
    <br />
    
    You can trigger Dependabot actions by commenting on this PR:
    - `@dependabot rebase` will rebase this PR
    - `@dependabot recreate` will recreate this PR, overwriting any edits
    that have been made to it
    - `@dependabot show <dependency name> ignore conditions` will show all
    of the ignore conditions of the specified dependency
    - `@dependabot ignore this major version` will close this PR and stop
    Dependabot creating any more for this major version (unless you reopen
    the PR or upgrade to it yourself)
    - `@dependabot ignore this minor version` will close this PR and stop
    Dependabot creating any more for this minor version (unless you reopen
    the PR or upgrade to it yourself)
    - `@dependabot ignore this dependency` will close this PR and stop
    Dependabot creating any more for this dependency (unless you reopen the
    PR or upgrade to it yourself)
    
    
    </details>
    
    Signed-off-by: dependabot[bot] <[email protected]>
    Co-authored-by: dependabot[bot] 
<49699333+dependabot[bot]@users.noreply.github.com>
---
 go.mod | 2 +-
 go.sum | 4 ++--
 2 files changed, 3 insertions(+), 3 deletions(-)

diff --git a/go.mod b/go.mod
index 788a8da9..b363bce5 100644
--- a/go.mod
+++ b/go.mod
@@ -48,7 +48,7 @@ require (
        golang.org/x/sync v0.22.0
        golang.org/x/sys v0.47.0
        gonum.org/v1/gonum v0.17.0
-       google.golang.org/grpc v1.82.0
+       google.golang.org/grpc v1.82.1
        google.golang.org/protobuf v1.36.11
        modernc.org/sqlite v1.54.0
 )
diff --git a/go.sum b/go.sum
index 57e4600a..6d65b06e 100644
--- a/go.sum
+++ b/go.sum
@@ -246,8 +246,8 @@ gonum.org/v1/gonum v0.17.0 
h1:VbpOemQlsSMrYmn7T2OUvQ4dqxQXU+ouZFQsZOx50z4=
 gonum.org/v1/gonum v0.17.0/go.mod 
h1:El3tOrEuMpv2UdMrbNlKEh9vd86bmQ6vqIcDwxEOc1E=
 google.golang.org/genproto/googleapis/rpc v0.0.0-20260414002931-afd174a4e478 
h1:RmoJA1ujG+/lRGNfUnOMfhCy5EipVMyvUE+KNbPbTlw=
 google.golang.org/genproto/googleapis/rpc 
v0.0.0-20260414002931-afd174a4e478/go.mod 
h1:4Hqkh8ycfw05ld/3BWL7rJOSfebL2Q+DVDeRgYgxUU8=
-google.golang.org/grpc v1.82.0 h1:vguDnZUPjE26w09A63VoxZPnvPjB5Riyc0mkXPFmAIU=
-google.golang.org/grpc v1.82.0/go.mod 
h1:yzTZ1TB1Z3SG+LIYaI+WiE8D5+PZ3ArnrSp8zF3+/ZA=
+google.golang.org/grpc v1.82.1 h1:NnAxzGRA0677vCa4BUkOAnO5+FfQqVl9iUXeD0IqcGE=
+google.golang.org/grpc v1.82.1/go.mod 
h1:yzTZ1TB1Z3SG+LIYaI+WiE8D5+PZ3ArnrSp8zF3+/ZA=
 google.golang.org/protobuf v1.36.11 
h1:fV6ZwhNocDyBLK0dj+fg8ektcVegBBuEolpbTQyBNVE=
 google.golang.org/protobuf v1.36.11/go.mod 
h1:HTf+CrKn2C3g5S8VImy6tdcUvCska2kB7j23XfzDpco=
 gopkg.in/check.v1 v0.0.0-20161208181325-20d25e280405/go.mod 
h1:Co6ibVJAznAaIkqp8huTwlJQCZ016jof/cbN4VW5Yz0=

Reply via email to