Debian-LTS has issued an advisory on January 4:
The issue is fixed upstream in 0.8.3.
Fixed upstream in 0.8.3
This is just for M7, we have 0.8.3 in Cauldron.
Assigning to the current maintainer.
I just submitted gssproxy-0.8.2-2.1.mga7 in update_testing for mageia 7.
Updated gssproxy package fixes security vulnerability:
gssproxy (aka gss-proxy) before 0.8.3 does not unlock cond_mutex before
pthread exit in gp_worker_main() in gp_workers.c (CVE-2020-12658).
Updated packages in core/updates_testing:
Fixed upstream in 0.8.3 =>