Here are the details from the Slackware 15.0 ChangeLog: patches/packages/libinput-1.31.3-i586-1_slack15.0.txz: Upgraded. This update fixes a security issue: libinput-device-group unescaped phys output can inject udev properties leading to arbitrary root code execution. Note that since /dev/uinput and /dev/uhid are only accessible by root on Slackware (and unlike some other distributions we make no exceptions), we were not vulnerable to this flaw. (* Security fix *)
Thanks to the friendly folks at the OSU Open Source Lab
(http://osuosl.org) for donating FTP and rsync hosting
to the Slackware project! :-)
Also see the "Get Slack" section on http://slackware.com for
additional mirror sites near you.
Updated package for Slackware 15.0:
ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/libinput-1.31.3-i586-1_slack15.0.txz
Updated package for Slackware x86_64 15.0:
ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/libinput-1.31.3-x86_64-1_slack15.0.txz
Updated package for Slackware -current:
ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/x/libinput-1.31.3-i686-1.txz
Updated package for Slackware x86_64 -current:
ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/x/libinput-1.31.3-x86_64-1.txz
Slackware 15.0 package:
a7c5cfa9b6363fd05589d23215fb0653 libinput-1.31.3-i586-1_slack15.0.txz
Slackware x86_64 15.0 package:
8f45f823f6f089908cee2b52b554a072 libinput-1.31.3-x86_64-1_slack15.0.txz
Slackware -current package:
a88f31f6b79f63173b74f1ff34463261 x/libinput-1.31.3-i686-1.txz
Slackware x86_64 -current package:
2970fd1385e2489df57978b158c5cfed x/libinput-1.31.3-x86_64-1.txz
Get the latest Linux and open source security news straight to your inbox.
Installation instructions: Upgrade the package as root: # upgradepkg libinput-1.31.3-i586-1_slack15.0.txz