CVE-2021-3567 log

Severity Medium
Remote No
Type Authentication bypass
Caribou can be crashed by attempting to insert the character "ē". This issue has security implications for cinnamon-screensaver because a crash of caribou causes the screensaver to crash as well, making access to the session possible without providing the correct password.
Group Package Affected Fixed Severity Status Ticket
AVG-2017 caribou 0.4.21+66+g14f5428-2 0.4.21+66+g14f5428-3 Medium Fixed