High severity7.5NVD Advisory· Published Feb 15, 2017· Updated May 13, 2026
CVE-2016-6866
CVE-2016-6866
Description
slock allows attackers to bypass the screen lock via vectors involving an invalid password hash, which triggers a NULL pointer dereference and crash.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- git.suckless.org/slock/commit/nvdPatchVendor Advisory
- s1m0n.dft-labs.eu/files/slock/slock.txtnvdThird Party Advisory
- www.openwall.com/lists/oss-security/2016/08/18/22nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2016/08/18/24nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/92546nvdThird Party AdvisoryVDB Entry
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2FYPV6QQPPYBL3Z2BYNYEJB67FSC55OR/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/RZPEJQNVODYSI4WQXM5GQKXRO7TPK2VG/nvd
News mentions
0No linked articles in our index yet.