Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-50292

Опубликовано: 05 июн. 2026
Источник: redhat
CVSS3: 6.7
EPSS Низкий

Описание

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

A flaw was found in libinput. A local attacker with access to /dev/uinput can inject arbitrary udev properties through the libinput-device-group helper. This injection can lead to root code execution, for example, by exploiting REMOVE_CMD properties that are executed when a device is removed. This vulnerability allows an attacker to gain elevated privileges on the system.

Отчет

This CVE is rated Moderate since /dev/uinput permissions are restricted to root by default on Red Hat Enterprise Linux.

Меры по смягчению последствий

Restrict access to /dev/uinput to trusted users only. This is the default on virtually all distributions but some packages install udev rules that allow a logged-in user to create uinput devices. Examples for this on Fedora are steam-device, antimicrox, kdeconnectd.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7libinputWill not fix
Red Hat Enterprise Linux 8libinputWill not fix
Red Hat Enterprise Linux 9libinputWill not fix
Red Hat Enterprise Linux 10libinputFixedRHSA-2026:3929614.07.2026
Red Hat Enterprise Linux 10.0 Extended Update SupportlibinputFixedRHSA-2026:4329022.07.2026

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-78
https://bugzilla.redhat.com/show_bug.cgi?id=2485390libinput: local privilege escalation via crafted uinput devices

EPSS

Процентиль: 39%
0.00498
Низкий

6.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.4
ubuntu
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 7.4
nvd
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 7.4
msrc
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 7.4
debian
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-gr ...

rocky
16 дней назад

Moderate: libinput security update

EPSS

Процентиль: 39%
0.00498
Низкий

6.7 Medium

CVSS3