Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2026:39296

Опубликовано: 15 июл. 2026
Источник: rocky
Оценка: Moderate

Описание

Moderate: libinput security update

libinput is a library that handles input devices for display servers and other applications that need to directly deal with input devices.

Security Fix(es):

  • libinput: local privilege escalation via crafted uinput devices (CVE-2026-50292)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 10

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 7.4
ubuntu
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 6.7
redhat
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 7.4
nvd
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 7.4
msrc
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution

CVSS3: 7.4
debian
около 2 месяцев назад

In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-gr ...