CVE-2017-7860: Grpc

Critical severity, CVSS 9.8. EPSS: 3% chance of exploitation in the next 30 days.

Google gRPC before 2017-02-22 has an out-of-bounds write caused by a heap-based buffer overflow related to the parse_unix function in core/ext/client_channel/parse_address.c.

Affected products

  • Grpc Grpc: up to and including 1.1.2

Published 2017-04-14. Last modified 2026-06-17.