Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jcq8-v68h-2c44

Опубликовано: 04 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.4

Описание

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

EPSS

Процентиль: 39%
0.00498
Низкий

7.4 High

CVSS3

Дефекты

CWE-93

Связанные уязвимости

CVSS3: 7.4
ubuntu
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 6.7
redhat
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 7.4
nvd
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 7.4
msrc
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 7.4
debian
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-gr ...

EPSS

Процентиль: 39%
0.00498
Низкий

7.4 High

CVSS3

Дефекты

CWE-93