Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-39296

Опубликовано: 16 июл. 2026
Источник: oracle-oval
Платформа: Oracle Linux 10

Описание

ELSA-2026-39296: libinput security update (MODERATE)

[1.30.1-2]

  • CVE-2026-50292: sanitize phys before printing it in libinput-device-group Resolves: RHEL-182371

Обновленные пакеты

Oracle Linux 10

Oracle Linux aarch64

libinput

1.30.1-2.el10_2

libinput-utils

1.30.1-2.el10_2

libinput-devel

1.30.1-2.el10_2

Oracle Linux x86_64

libinput

1.30.1-2.el10_2

libinput-utils

1.30.1-2.el10_2

libinput-devel

1.30.1-2.el10_2

Связанные CVE

Связанные уязвимости

CVSS3: 7.4
ubuntu
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 6.7
redhat
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 7.4
nvd
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 7.4
msrc
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 7.4
debian
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-gr ...