mirror of
https://gitlab.com/buildroot.org/buildroot.git
synced 2026-09-10 16:24:17 -09:00
- CVE-2026-50292:
In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-
group unescaped phys output can inject udev properties leading to
arbitrary root code execution
For more information, see:
- https://www.cve.org/CVERecord?id=CVE-2026-50292
- 8c15a01d16
- fc2262e1c1
- b2bde9504d
(cherry picked from commit 1cc0363191)
Signed-off-by: Thomas Perale <thomas.perale@mind.be>
2.0 KiB
2.0 KiB