Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Mageia 7: 2021-0043 Critical: Caribou Lock Bypass Issue

mageia
Calendar Grey January 17, 2021
Dist Mageia Esm H88
Revised moose libraries enhance safety measures in Mageia, successfully addressing lock-screen circumvention.
An issue in caribou, that was exposed by a CVE fix in X.org server, permits a screensaver-lock bypass

Summary

An issue in caribou, that was exposed by a CVE fix in X.org server, permits a screensaver-lock bypass. It is possible to crash the screensaver and unlock the desktop via the virtual keyboard. References:

References

- https://bugs.mageia.org/show_bug.cgi?id=28072

- https://github.com/linuxmint/cinnamon-screensaver/issues/354

- https://www.openwall.com/lists/oss-security/2021/01/15/1

Resolution

SRPMS

- 7/core/caribou-0.4.21-3.1.mga7

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 17 Jan 2021
URL: https://advisories.mageia.org/MGASA-2021-0043.html
Type: security

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here