Описание
Security update for libinput
This update for libinput fixes the following issues
- CVE-2026-50265,CVE-2026-50292: crafted uinput devices can lead to local privilege escalation (bsc#1267852).
Список пакетов
Image SLES15-SP6-SAP-BYOS
libinput10-1.25.0-150600.3.3.1
Image SLES15-SP6-SAP-BYOS-EC2
libinput10-1.25.0-150600.3.3.1
Image SLES15-SP6-SAP-Hardened-BYOS
libinput10-1.25.0-150600.3.3.1
Image SLES15-SP6-SAP-Hardened-BYOS-EC2
libinput10-1.25.0-150600.3.3.1
Image SLES15-SP6-SAP-Hardened-EC2
libinput10-1.25.0-150600.3.3.1
SUSE Linux Enterprise Server 15 SP6-LTSS
libinput-devel-1.25.0-150600.3.3.1
libinput-tools-1.25.0-150600.3.3.1
libinput-udev-1.25.0-150600.3.3.1
libinput10-1.25.0-150600.3.3.1
SUSE Linux Enterprise Server for SAP Applications 15 SP6
libinput-devel-1.25.0-150600.3.3.1
libinput-tools-1.25.0-150600.3.3.1
libinput-udev-1.25.0-150600.3.3.1
libinput10-1.25.0-150600.3.3.1
Ссылки
- Link for SUSE-SU-2026:2529-1
- E-Mail link for SUSE-SU-2026:2529-1
- SUSE Security Ratings
- SUSE Bug 1267852
- SUSE CVE CVE-2026-50265 page
- SUSE CVE CVE-2026-50292 page
Описание
This CVE ID was assigned as a duplicate of CVE-2026-50292
Затронутые продукты
Image SLES15-SP6-SAP-BYOS-EC2:libinput10-1.25.0-150600.3.3.1
Image SLES15-SP6-SAP-BYOS:libinput10-1.25.0-150600.3.3.1
Image SLES15-SP6-SAP-Hardened-BYOS-EC2:libinput10-1.25.0-150600.3.3.1
Image SLES15-SP6-SAP-Hardened-BYOS:libinput10-1.25.0-150600.3.3.1
Ссылки
- CVE-2026-50265
- SUSE Bug 1267852
Описание
In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution
Затронутые продукты
Image SLES15-SP6-SAP-BYOS-EC2:libinput10-1.25.0-150600.3.3.1
Image SLES15-SP6-SAP-BYOS:libinput10-1.25.0-150600.3.3.1
Image SLES15-SP6-SAP-Hardened-BYOS-EC2:libinput10-1.25.0-150600.3.3.1
Image SLES15-SP6-SAP-Hardened-BYOS:libinput10-1.25.0-150600.3.3.1
Ссылки
- CVE-2026-50292
- SUSE Bug 1267852