CVE-2020-12658

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2020
Last modified:
04/08/2024

Description

gssproxy (aka gss-proxy) before 0.8.3 does not unlock cond_mutex before pthread exit in gp_worker_main() in gp_workers.c. NOTE: An upstream comment states "We are already on a shutdown path when running the code in question, so a DoS there doesn't make any sense, and there has been no additional information provided us (as upstream) to indicate why this would be a problem.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gssproxy_project:gssproxy:*:*:*:*:*:*:*:* 0.8.3 (excluding)
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*