Описание
In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution
Ссылки
- Patch
- Vendor Advisory
- Mailing ListPatchThird Party Advisory
- Vendor Advisory
Уязвимые конфигурации
Одно из
EPSS
7.4 High
CVSS3
9.8 Critical
CVSS3
Дефекты
Связанные уязвимости
In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution
In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution
In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution
In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-gr ...
EPSS
7.4 High
CVSS3
9.8 Critical
CVSS3