<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 05:50:27 +0000</lastBuildDate>
    <item>
      <title>ALSA-2026:39296 — Moderate: libinput security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2026:39296</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:10: libinput, AlmaLinux:10: libinput-devel, AlmaLinux:10: libinput-utils&lt;/p&gt;
&lt;p&gt;libinput is a library that handles input devices for display servers and other applications that need to directly deal with input devices.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libinput: local privilege escalation via crafted uinput devices (CVE-2026-50292)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:10: libinput, AlmaLinux:10: libinput-devel, AlmaLinux:10: libinput-utils&lt;/p&gt;
&lt;p&gt;libinput is a library that handles input devices for display servers and other applications that need to directly deal with input devices.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libinput: local privilege escalation via crafted uinput devices (CVE-2026-50292)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2026:39296</guid>
    </item>
    <item>
      <title>certfr-2026-avi-0731 — De multiples vulnérabilités ont été découvertes dans les produits Microsoft. Certaines d'entre elles permettent à un at…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0731</link>
      <description>certfr-2026-avi-0731</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2026-avi-0731</guid>
    </item>
    <item>
      <title>EUVD-2026-324680</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-324680</link>
      <description>EUVD-2026-324680</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-324680</guid>
    </item>
    <item>
      <title>fkie_cve-2026-50292</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2026-50292</link>
      <description>&lt;p&gt;In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2026-50292</guid>
    </item>
    <item>
      <title>GHSA-jcq8-v68h-2c44</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-jcq8-v68h-2c44</link>
      <description>&lt;p&gt;In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-jcq8-v68h-2c44</guid>
    </item>
    <item>
      <title>msrc_CVE-2026-50292 — In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev propert…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2026-50292</link>
      <description>msrc_CVE-2026-50292</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2026-50292</guid>
    </item>
    <item>
      <title>OESA-2026-2628 — libinput security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2026-2628</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP4: libinput, openEuler:22.03-LTS-SP4: libinput, openEuler:24.03-LTS-SP1: libinput, openEuler:24.03-LTS-SP3: libinput&lt;/p&gt;
&lt;p&gt;libinput is a library to handle input devices in Wayland compositors and to provide  a generic X.Org input driver.It provides device detection, device handling, input  device event processing and abstraction so minimize the amount of custom input code compositors need to provide the common set of functionality that users expect.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution(CVE-2026-50292)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP4: libinput, openEuler:22.03-LTS-SP4: libinput, openEuler:24.03-LTS-SP1: libinput, openEuler:24.03-LTS-SP3: libinput&lt;/p&gt;
&lt;p&gt;libinput is a library to handle input devices in Wayland compositors and to provide  a generic X.Org input driver.It provides device detection, device handling, input  device event processing and abstraction so minimize the amount of custom input code compositors need to provide the common set of functionality that users expect.&#13;
&#13;
Security Fix(es):&lt;/p&gt;
&lt;p&gt;In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution(CVE-2026-50292)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2026-2628</guid>
    </item>
    <item>
      <title>openSUSE-SU-2026:21091-1 — Security update for libinput</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2026:21091-1</link>
      <description>&lt;p&gt;Security update for libinput&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for libinput&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2026:21091-1</guid>
    </item>
    <item>
      <title>RHSA-2026:43290 — Red Hat Security Advisory: libinput security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2026:43290</link>
      <description>&lt;p&gt;libinput: local privilege escalation via crafted uinput devices&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libinput: local privilege escalation via crafted uinput devices&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2026:43290</guid>
    </item>
    <item>
      <title>RLSA-2026:39296 — Moderate: libinput security update</title>
      <link>https://cve.radiocsirt.org/vuln/rlsa-2026:39296</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:10: libinput&lt;/p&gt;
&lt;p&gt;libinput is a library that handles input devices for display servers and other applications that need to directly deal with input devices.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libinput: local privilege escalation via crafted uinput devices (CVE-2026-50292)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Rocky Linux:10: libinput&lt;/p&gt;
&lt;p&gt;libinput is a library that handles input devices for display servers and other applications that need to directly deal with input devices.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libinput: local privilege escalation via crafted uinput devices (CVE-2026-50292)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rlsa-2026:39296</guid>
    </item>
    <item>
      <title>SUSE-SU-2026:22165-1 — Security update for libinput</title>
      <link>https://cve.radiocsirt.org/vuln/suse-su-2026:22165-1</link>
      <description>&lt;p&gt;Security update for libinput&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for libinput&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/suse-su-2026:22165-1</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2026-50292</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-50292</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: libinput, Ubuntu:18.04:LTS: libinput, Ubuntu:Pro:20.04:LTS: libinput, Ubuntu:22.04:LTS: libinput, Ubuntu:24.04:LTS: libinput, Ubuntu:25.10: libinput, Ubuntu:26.04:LTS: libinput&lt;/p&gt;
&lt;p&gt;In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: libinput, Ubuntu:18.04:LTS: libinput, Ubuntu:Pro:20.04:LTS: libinput, Ubuntu:22.04:LTS: libinput, Ubuntu:24.04:LTS: libinput, Ubuntu:25.10: libinput, Ubuntu:26.04:LTS: libinput&lt;/p&gt;
&lt;p&gt;In libinput before 1.30.4 and 1.31.x before 1.31.3, libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-50292</guid>
    </item>
    <item>
      <title>WID-SEC-W-2026-2318 — Red Hat Enterprise Linux (libinput): Schwachstelle ermöglicht Privilegieneskalation</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2318</link>
      <description>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux (libinput) ausnutzen, um seine Privilegien zu erhöhen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein lokaler Angreifer kann eine Schwachstelle in Red Hat Enterprise Linux (libinput) ausnutzen, um seine Privilegien zu erhöhen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2318</guid>
    </item>
  </channel>
</rss>
