github.com/signalfx/splunk-otel-collector is vulnerable to Race Condition
61
Medium Risk
Affected versions of this package are affected by a race condition in a method that implements non-contiguous locks on shared data. This situation allows other goroutines to modify h.sources or h.previousEvents between lock and unlock cycles, which can lead to data corruption and system outages. An attacker could exploit this vulnerability to conduct Denial of Service (DoS) attacks.
You are affected if you are using a version that falls within the vulnerable range.
github.com/signalfx/splunk-otel-collector is vulnerable to Race Condition in versions 0.91.3 - 0.115.0.
Upgrade the github.com/signalfx/splunk-otel-collector library to the patch version.
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant