libinput vulnerability

  1. CVE-2026-50292 libinput Root RCE: Windows Admins Must Patch Linux Input Stack

    CVE-2026-50292 is a newly disclosed libinput vulnerability, published in early June 2026 and fixed in libinput 1.30.4 and 1.31.3, in which unescaped physical device information can be abused through udev handling to enable arbitrary code execution as root on affected Linux systems. Microsoft’s...