An update that solves one vulnerability and has one errata is now available. . openSUSE Security Update: Security update for caribou ______________________________________________________________________________ Announcement ID: openSUSE-SU-2021:1071-1 Rating: important References: #1186617 #1187112 Cross-References: CVE-2021-3567 CVSS scores: CVE-2021-3567 (SUSE): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: openSUSE Leap 15.2 ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for caribou fixes the following issues: Security issue fixed: - CVE-2021-3567: Fixed a segfault when attempting to use shifted characters (bsc#1186617). This update was imported from the SUSE:SLE-15-SP2:Update update project. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.2: zypper in -t patch openSUSE-2021-1071=1 Package List: - openSUSE Leap 15.2 (x86_64): caribou-0.4.21-lp152.7.3.1 caribou-common-0.4.21-lp152.7.3.1 caribou-debuginfo-0.4.21-lp152.7.3.1 caribou-debugsource-0.4.21-lp152.7.3.1 caribou-devel-0.4.21-lp152.7.3.1 caribou-gtk-module-common-0.4.21-lp152.7.3.1 caribou-gtk2-module-0.4.21-lp152.7.3.1 caribou-gtk2-module-debuginfo-0.4.21-lp152.7.3.1 caribou-gtk3-module-0.4.21-lp152.7.3.1 caribou-gtk3-module-debuginfo-0.4.21-lp152.7.3.1 libcaribou0-0.4.21-lp152.7.3.1 libcaribou0-debuginfo-0.4.21-lp152.7.3.1 typelib-1_0-Caribou-1_0-0.4.21-lp152.7.3.1 - openSUSE Leap 15.2 (noarch): caribou-lang-0.4.21-lp152.7.3.1 References: https://www.suse.com/security/cve/CVE-2021-3567.html https://bugzilla.suse.com/1186617 https://bugzilla.suse.com/1187112 . Crucial news for caribou users on openSUSE Leap 15.2 addresses critical segmentation faults. Enhance your security by following the outlined steps.. openSUSE Security, caribou Update, Segfault Fix, Linux Security Patch. . Severity: Important. LinuxSecurity.com Team
An update that solves one vulnerability and has one errata is now available. . openSUSE Security Update: Security update for caribou ______________________________________________________________________________ Announcement ID: openSUSE-SU-2021:2414-1 Rating: important References: #1186617 #1187112 Cross-References: CVE-2021-3567 CVSS scores: CVE-2021-3567 (SUSE): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: openSUSE Leap 15.3 ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for caribou fixes the following issues: Security issue fixed: - CVE-2021-3567: Fixed a segfault when attempting to use shifted characters (bsc#1186617). Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.3: zypper in -t patch openSUSE-SLE-15.3-2021-2414=1 Package List: - openSUSE Leap 15.3 (aarch64 ppc64le s390x x86_64): caribou-0.4.21-12.5.1 caribou-common-0.4.21-12.5.1 caribou-debuginfo-0.4.21-12.5.1 caribou-debugsource-0.4.21-12.5.1 caribou-devel-0.4.21-12.5.1 caribou-gtk-module-common-0.4.21-12.5.1 caribou-gtk2-module-0.4.21-12.5.1 caribou-gtk2-module-debuginfo-0.4.21-12.5.1 caribou-gtk3-module-0.4.21-12.5.1 caribou-gtk3-module-debuginfo-0.4.21-12.5.1 libcaribou0-0.4.21-12.5.1 libcaribou0-debuginfo-0.4.21-12.5.1 typelib-1_0-Caribou-1_0-0.4.21-12.5.1 - openSUSE Leap 15.3 (noarch): caribou-lang-0.4.21-12.5.1 References: https://www.suse.com/security/cve/CVE-2021-3567.html https://bugzilla.suse.com/1186617 https://bugzilla.suse.com/1187112 . Fedora releases urgent security patchresolving buffer overflow in gnome-shell with advisory ID FEDORA-SU-2021:1234-1.. OpenSUSE Update, Caribou Security, Critical Patch, Segfault Issue. . Severity: Important. LinuxSecurity.com Team
An update that solves one vulnerability and has one errata is now available. . SUSE Security Update: Security update for caribou ______________________________________________________________________________ Announcement ID: SUSE-SU-2021:2414-1 Rating: important References: #1186617 #1187112 Cross-References: CVE-2021-3567 CVSS scores: CVE-2021-3567 (SUSE): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: SUSE Linux Enterprise Module for Desktop Applications 15-SP3 SUSE Linux Enterprise Module for Desktop Applications 15-SP2 ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for caribou fixes the following issues: Security issue fixed: - CVE-2021-3567: Fixed a segfault when attempting to use shifted characters (bsc#1186617). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Module for Desktop Applications 15-SP3: zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP3-2021-2414=1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP2: zypper in -t patch SUSE-SLE-Module-Desktop-Applications-15-SP2-2021-2414=1 Package List: - SUSE Linux Enterprise Module for Desktop Applications 15-SP3 (aarch64 ppc64le s390x x86_64): caribou-0.4.21-12.5.1 caribou-common-0.4.21-12.5.1 caribou-debuginfo-0.4.21-12.5.1 caribou-debugsource-0.4.21-12.5.1 caribou-devel-0.4.21-12.5.1 caribou-gtk-module-common-0.4.21-12.5.1 caribou-gtk2-module-0.4.21-12.5.1 caribou-gtk2-module-debuginfo-0.4.21-12.5.1 caribou-gtk3-module-0.4.21-12.5.1 caribou-gtk3-module-debuginfo-0.4.21-12.5.1 libcaribou0-0.4.21-12.5.1 libcaribou0-debuginfo-0.4.21-12.5.1 typelib-1_0-Caribou-1_0-0.4.21-12.5.1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP3 (noarch): caribou-lang-0.4.21-12.5.1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP2 (aarch64 ppc64le s390x x86_64): caribou-0.4.21-12.5.1 caribou-common-0.4.21-12.5.1 caribou-debuginfo-0.4.21-12.5.1 caribou-debugsource-0.4.21-12.5.1 caribou-devel-0.4.21-12.5.1 caribou-gtk-module-common-0.4.21-12.5.1 caribou-gtk2-module-0.4.21-12.5.1 caribou-gtk2-module-debuginfo-0.4.21-12.5.1 caribou-gtk3-module-0.4.21-12.5.1 caribou-gtk3-module-debuginfo-0.4.21-12.5.1 libcaribou0-0.4.21-12.5.1 libcaribou0-debuginfo-0.4.21-12.5.1 typelib-1_0-Caribou-1_0-0.4.21-12.5.1 - SUSE Linux Enterprise Module for Desktop Applications 15-SP2 (noarch): caribou-lang-0.4.21-12.5.1 References: https://www.suse.com/security/cve/CVE-2021-3567.html https://bugzilla.suse.com/1186617 https://bugzilla.suse.com/1187112 . SUSE Security Advisory outlines essential updates for Caribou, addressing severe vulnerabilities along with comprehensive installation guidelines.. SUSE Linux Security, Caribou Segfault, Desktop Applications Update. . Severity: Important. LinuxSecurity.com Team
An update that fixes one vulnerability is now available. . SUSE Security Update: Security update for caribou ______________________________________________________________________________ Announcement ID: SUSE-SU-2021:2007-1 Rating: important References: #1186617 Cross-References: CVE-2021-3567 CVSS scores: CVE-2021-3567 (SUSE): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H Affected Products: SUSE Manager Server 4.0 SUSE Manager Retail Branch Server 4.0 SUSE Manager Proxy 4.0 SUSE Linux Enterprise Server for SAP 15-SP1 SUSE Linux Enterprise Server for SAP 15 SUSE Linux Enterprise Server 15-SP1-LTSS SUSE Linux Enterprise Server 15-SP1-BCL SUSE Linux Enterprise Server 15-LTSS SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS SUSE Linux Enterprise High Performance Computing 15-LTSS SUSE Linux Enterprise High Performance Computing 15-ESPOS SUSE Enterprise Storage 6 SUSE CaaS Platform 4.0 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for caribou fixes the following issues: Security issue fixed: - CVE-2021-3567: Fixed a segfault when attempting to use shifted characters (bsc#1186617). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Manager Server 4.0: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Server-4.0-2021-2007=1 - SUSE Manager Retail Branch Server 4.0: zypper in -t patchSUSE-SLE-Product-SUSE-Manager-Retail-Branch-Server-4.0-2021-2007=1 - SUSE Manager Proxy 4.0: zypper in -t patch SUSE-SLE-Product-SUSE-Manager-Proxy-4.0-2021-2007=1 - SUSE Linux Enterprise Server for SAP 15-SP1: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP1-2021-2007=1 - SUSE Linux Enterprise Server for SAP 15: zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-2021-2007=1 - SUSE Linux Enterprise Server 15-SP1-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-SP1-LTSS-2021-2007=1 - SUSE Linux Enterprise Server 15-SP1-BCL: zypper in -t patch SUSE-SLE-Product-SLES-15-SP1-BCL-2021-2007=1 - SUSE Linux Enterprise Server 15-LTSS: zypper in -t patch SUSE-SLE-Product-SLES-15-2021-2007=1 - SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP1-LTSS-2021-2007=1 - SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-SP1-ESPOS-2021-2007=1 - SUSE Linux Enterprise High Performance Computing 15-LTSS: zypper in -t patch SUSE-SLE-Product-HPC-15-2021-2007=1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS: zypper in -t patch SUSE-SLE-Product-HPC-15-2021-2007=1 - SUSE Enterprise Storage 6: zypper in -t patch SUSE-Storage-6-2021-2007=1 - SUSE CaaS Platform 4.0: To install this update, use the SUSE CaaS Platform 'skuba' tool. It will inform you if it detects new updates and let you then trigger updating of the complete cluster in a controlled way. Package List: - SUSE Manager Server 4.0 (ppc64le s390x x86_64): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 - SUSE Manager Server 4.0 (noarch): caribou-lang-0.4.21-5.3.1 - SUSE Manager Retail Branch Server 4.0 (noarch): caribou-lang-0.4.21-5.3.1 - SUSE Manager Retail Branch Server 4.0 (x86_64): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 - SUSE Manager Proxy 4.0 (noarch): caribou-lang-0.4.21-5.3.1 - SUSE Manager Proxy 4.0 (x86_64): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 - SUSE Linux Enterprise Server for SAP 15-SP1 (ppc64le x86_64): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 - SUSE Linux Enterprise Server for SAP 15-SP1 (noarch): caribou-lang-0.4.21-5.3.1 - SUSE Linux Enterprise Server for SAP 15 (ppc64le x86_64): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 - SUSE Linux Enterprise Server for SAP 15 (noarch): caribou-lang-0.4.21-5.3.1 - SUSE Linux Enterprise Server 15-SP1-LTSS (aarch64 ppc64le s390x x86_64): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 - SUSE Linux Enterprise Server 15-SP1-LTSS (noarch): caribou-lang-0.4.21-5.3.1 - SUSE Linux Enterprise Server 15-SP1-BCL (noarch): caribou-lang-0.4.21-5.3.1 - SUSE Linux Enterprise Server 15-SP1-BCL (x86_64): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 - SUSE Linux Enterprise Server 15-LTSS (aarch64 s390x): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 - SUSE Linux Enterprise Server 15-LTSS (noarch): caribou-lang-0.4.21-5.3.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS (aarch64 x86_64): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-LTSS (noarch): caribou-lang-0.4.21-5.3.1 - SUSE Linux Enterprise High Performance Computing 15-SP1-ESPOS (aarch64 x86_64): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 - SUSE LinuxEnterprise High Performance Computing 15-SP1-ESPOS (noarch): caribou-lang-0.4.21-5.3.1 - SUSE Linux Enterprise High Performance Computing 15-LTSS (aarch64 x86_64): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 - SUSE Linux Enterprise High Performance Computing 15-LTSS (noarch): caribou-lang-0.4.21-5.3.1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS (aarch64 x86_64): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 - SUSE Linux Enterprise High Performance Computing 15-ESPOS (noarch): caribou-lang-0.4.21-5.3.1 - SUSE Enterprise Storage 6 (aarch64 x86_64): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 -SUSE Enterprise Storage 6 (noarch): caribou-lang-0.4.21-5.3.1 - SUSE CaaS Platform 4.0 (noarch): caribou-lang-0.4.21-5.3.1 - SUSE CaaS Platform 4.0 (x86_64): caribou-0.4.21-5.3.1 caribou-common-0.4.21-5.3.1 caribou-debuginfo-0.4.21-5.3.1 caribou-debugsource-0.4.21-5.3.1 caribou-devel-0.4.21-5.3.1 caribou-gtk-module-common-0.4.21-5.3.1 caribou-gtk2-module-0.4.21-5.3.1 caribou-gtk2-module-debuginfo-0.4.21-5.3.1 caribou-gtk3-module-0.4.21-5.3.1 caribou-gtk3-module-debuginfo-0.4.21-5.3.1 libcaribou0-0.4.21-5.3.1 libcaribou0-debuginfo-0.4.21-5.3.1 typelib-1_0-Caribou-1_0-0.4.21-5.3.1 References: https://www.suse.com/security/cve/CVE-2021-3567.html https://bugzilla.suse.com/1186617 . Vital SUSE Security Patch for Orca addresses significant memory overflow concern, improving overall system reliability.. SUSE Update, Software Security, Linux Patch, Caribou Fix. . Severity: Important. LinuxSecurity.com Team
It was found that the fix for CVE-2020-25712 in the Xorg X server, addressed in DLA-2486-1, caused a regression in caribou, making it crash whenever special (shifted) characters were entered. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-2675-1
Applications using Caribou could be made to crash if given specially crafted input.. =========================================================================Ubuntu Security Notice USN-4958-1 May 17, 2021 caribou vulnerability ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.10 - Ubuntu 20.04 LTS Summary: Applications using Caribou could be made to crash if given specially crafted input. Software Description: - caribou: Configurable on screen keyboard with scanning mode Details: It was discovered that the Caribou onscreen keyboard could be made to crash when given certain input values. An attacker could use this to bypass screen-locking applications that support using Caribou as an input mechanism. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.10: gir1.2-caribou-1.0 0.4.21-7ubuntu0.20.10.1 libcaribou0 0.4.21-7ubuntu0.20.10.1 Ubuntu 20.04 LTS: gir1.2-caribou-1.0 0.4.21-7ubuntu0.20.04.1 libcaribou0 0.4.21-7ubuntu0.20.04.1 After a standard system update you need to restart applications that use Caribou as an onscreen keyboard to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4958-1 https://bugs.launchpad.net/ubuntu/+source/caribou/+bug/1912060 Package Information: https://launchpad.net/ubuntu/+source/caribou/0.4.21-7ubuntu0.20.10.1 https://launchpad.net/ubuntu/+source/caribou/0.4.21-7ubuntu0.20.04.1 . Enhance your Ubuntu system's security by applying the latest updates for the Caribou vulnerability, which could cause app instability with specific inputs. Caribou Vulnerability, Application Crash, Input Exploit. . Severity: Critical. LinuxSecurity.com Team
An issue in caribou, that was exposed by a CVE fix in X.org server, permits a screensaver-lock bypass. It is possible to crash the screensaver and unlock the desktop via the virtual keyboard. References: . MGASA-2021-0043 - Updated caribou packages fix a security vulnerability Publication date: 17 Jan 2021 URL: https://advisories.mageia.org/MGASA-2021-0043.html Type: security Affected Mageia releases: 7 An issue in caribou, that was exposed by a CVE fix in X.org server, permits a screensaver-lock bypass. It is possible to crash the screensaver and unlock the desktop via the virtual keyboard. References: - https://bugs.mageia.org/show_bug.cgi?id=28072 - https://github.com/linuxmint/cinnamon-screensaver/issues/354 - https://www.openwall.com/lists/oss-security/2021/01/15/1 SRPMS: - 7/core/caribou-0.4.21-3.1.mga7 . Revised moose libraries enhance safety measures in Mageia, successfully addressing lock-screen circumvention.. Mageia Security Update, Caribou Lock Bypass, Linux Advisory. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.