Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2021:2414-1

Опубликовано: 20 июл. 2021
Источник: suse-cvrf

Описание

Security update for caribou

This update for caribou fixes the following issues:

Security issue fixed:

  • CVE-2021-3567: Fixed a segfault when attempting to use shifted characters (bsc#1186617).

Список пакетов

SUSE Linux Enterprise Module for Desktop Applications 15 SP2
caribou-0.4.21-12.5.1
caribou-common-0.4.21-12.5.1
caribou-devel-0.4.21-12.5.1
caribou-gtk-module-common-0.4.21-12.5.1
caribou-gtk2-module-0.4.21-12.5.1
caribou-gtk3-module-0.4.21-12.5.1
caribou-lang-0.4.21-12.5.1
libcaribou0-0.4.21-12.5.1
typelib-1_0-Caribou-1_0-0.4.21-12.5.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP3
caribou-0.4.21-12.5.1
caribou-common-0.4.21-12.5.1
caribou-devel-0.4.21-12.5.1
caribou-gtk-module-common-0.4.21-12.5.1
caribou-gtk2-module-0.4.21-12.5.1
caribou-gtk3-module-0.4.21-12.5.1
caribou-lang-0.4.21-12.5.1
libcaribou0-0.4.21-12.5.1
typelib-1_0-Caribou-1_0-0.4.21-12.5.1

Описание

A flaw was found in Caribou due to a regression of CVE-2020-25712 fix. An attacker could use this flaw to bypass screen-locking applications that leverage Caribou as an input mechanism. The highest threat from this vulnerability is to system availability.


Затронутые продукты
SUSE Linux Enterprise Module for Desktop Applications 15 SP2:caribou-0.4.21-12.5.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP2:caribou-common-0.4.21-12.5.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP2:caribou-devel-0.4.21-12.5.1
SUSE Linux Enterprise Module for Desktop Applications 15 SP2:caribou-gtk-module-common-0.4.21-12.5.1

Ссылки