gssproxy (aka gss-proxy) before 0.8.3 does not unlock cond_mutex before pthread exit in gp_worker_main() in gp_workers.c (CVE-2020-12658). References: - https://bugs.mageia.org/show_bug.cgi?id=28019 . MGASA-2021-0081 - Updated gssproxy package fixes a security vulnerability Publication date: 11 Feb 2021 URL: https://advisories.mageia.org/MGASA-2021-0081.html Type: security Affected Mageia releases: 7 CVE: CVE-2020-12658 gssproxy (aka gss-proxy) before 0.8.3 does not unlock cond_mutex before pthread exit in gp_worker_main() in gp_workers.c (CVE-2020-12658). References: - https://bugs.mageia.org/show_bug.cgi?id=28019 - https://lists.debian.org/debian-lts-announce/2021/01/msg00004.html - https://www.cve.org/CVERecord?id=CVE-2020-12658 SRPMS: - 7/core/gssproxy-0.8.2-2.1.mga7 . Mageia 2022-0092 introduces kernel patches to fix vulnerabilities, ensuring improved performance and safeguarding user data.. gssproxy Update, Mageia Security, gssproxy Issue. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.