Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
An update that solves 2 vulnerabilities and has one bug fix can now be installed.. openSUSE security update: security update for libinput ------------------------------------------------------------- Announcement ID: openSUSE-SU-2026:21091-1 Rating: important References: * bsc#1267852 Cross-References: * CVE-2026-50265 * CVE-2026-50292 CVSS scores: * CVE-2026-50265 ( SUSE ): 7 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50265 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N Affected Products: openSUSE Leap 16.0 ------------------------------------------------------------- An update that solves 2 vulnerabilities and has one bug fix can now be installed. Description: This update for libinput fixes the following issues - CVE-2026-50265,CVE-2026-50292: crafted uinput devices can lead to local privilege escalation (bsc#1267852). Patch instructions: To install this openSUSE security update use the suse recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 16.0 zypper in -t patch openSUSE-Leap-16.0-956=1 Package List: - openSUSE Leap 16.0: libinput-debug-gui-1.28.1-160000.3.1 libinput-devel-1.28.1-160000.3.1 libinput-tools-1.28.1-160000.3.1 libinput-udev-1.28.1-160000.3.1 libinput10-1.28.1-160000.3.1 References: * https://www.suse.com/security/cve/CVE-2026-50265.html * https://www.suse.com/security/cve/CVE-2026-50292.html . This important openSUSE update for libinput resolves two issues with local privilege escalation.. libinput update, openSUSE security, privilege escalation fix, system vulnerabilities. . Severity: Important. LinuxSecurity.com Team
An update that solves two vulnerabilities can now be installed.. # Security update for libinput Announcement ID: SUSE-SU-2026:2523-1 Release Date: 2026-06-23T08:52:48Z Rating: important References: * bsc#1267852 Cross-References: * CVE-2026-50265 * CVE-2026-50292 CVSS scores: * CVE-2026-50265 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2026-50265 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50265 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 7.4 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP5 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP5 An update that solves two vulnerabilities can now be installed. ## Description: This update for libinput fixes the following issues * CVE-2026-50265,CVE-2026-50292: crafted uinput devices can lead to local privilege escalation (bsc#1267852). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 15 SP5 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2026-2523=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2026-2523=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2026-2523=1 * openSUSE Leap 15.5 zypper in -t patch SUSE-2026-2523=1 * SUSE Linux EnterpriseHigh Performance Computing LTSS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2026-2523=1 ## Package List: * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (ppc64le x86_64) * libinput-debugsource-1.21.0-150500.3.3.1 * libinput10-debuginfo-1.21.0-150500.3.3.1 * libinput-udev-debuginfo-1.21.0-150500.3.3.1 * libinput-tools-debuginfo-1.21.0-150500.3.3.1 * libinput10-1.21.0-150500.3.3.1 * libinput-devel-1.21.0-150500.3.3.1 * libinput-udev-1.21.0-150500.3.3.1 * libinput-tools-1.21.0-150500.3.3.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (aarch64 x86_64) * libinput-debugsource-1.21.0-150500.3.3.1 * libinput10-debuginfo-1.21.0-150500.3.3.1 * libinput-udev-debuginfo-1.21.0-150500.3.3.1 * libinput-tools-debuginfo-1.21.0-150500.3.3.1 * libinput10-1.21.0-150500.3.3.1 * libinput-devel-1.21.0-150500.3.3.1 * libinput-udev-1.21.0-150500.3.3.1 * libinput-tools-1.21.0-150500.3.3.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (aarch64 x86_64) * libinput-debugsource-1.21.0-150500.3.3.1 * libinput10-debuginfo-1.21.0-150500.3.3.1 * libinput-udev-debuginfo-1.21.0-150500.3.3.1 * libinput-tools-debuginfo-1.21.0-150500.3.3.1 * libinput10-1.21.0-150500.3.3.1 * libinput-devel-1.21.0-150500.3.3.1 * libinput-udev-1.21.0-150500.3.3.1 * libinput-tools-1.21.0-150500.3.3.1 * openSUSE Leap 15.5 (aarch64 i586 ppc64le s390x x86_64) * libinput-debugsource-1.21.0-150500.3.3.1 * libinput10-debuginfo-1.21.0-150500.3.3.1 * libinput-udev-debuginfo-1.21.0-150500.3.3.1 * libinput-tools-debuginfo-1.21.0-150500.3.3.1 * libinput10-1.21.0-150500.3.3.1 * libinput-devel-1.21.0-150500.3.3.1 * libinput-debug-gui-1.21.0-150500.3.3.1 * libinput-udev-1.21.0-150500.3.3.1 * libinput-tools-1.21.0-150500.3.3.1 * libinput-debug-gui-debuginfo-1.21.0-150500.3.3.1 * libinput-extra-debugsource-1.21.0-150500.3.3.1 * openSUSE Leap 15.5 (x86_64) *libinput10-32bit-debuginfo-1.21.0-150500.3.3.1 * libinput10-32bit-1.21.0-150500.3.3.1 * openSUSE Leap 15.5 (aarch64_ilp32) * libinput10-64bit-1.21.0-150500.3.3.1 * libinput10-64bit-debuginfo-1.21.0-150500.3.3.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (aarch64 ppc64le s390x x86_64) * libinput-debugsource-1.21.0-150500.3.3.1 * libinput10-debuginfo-1.21.0-150500.3.3.1 * libinput-udev-debuginfo-1.21.0-150500.3.3.1 * libinput-tools-debuginfo-1.21.0-150500.3.3.1 * libinput10-1.21.0-150500.3.3.1 * libinput-devel-1.21.0-150500.3.3.1 * libinput-udev-1.21.0-150500.3.3.1 * libinput-tools-1.21.0-150500.3.3.1 ## References: * https://www.suse.com/security/cve/CVE-2026-50265.html * https://www.suse.com/security/cve/CVE-2026-50292.html * https://bugzilla.suse.com/show_bug.cgi?id=1267852 . Address important vulnerabilities in libinput with SUSE's latest security update. Recommended patch instructions included.. SUSE security patch libinput update escalations vulnerabilities. . Severity: Important. LinuxSecurity.com Team
An update that solves two vulnerabilities can now be installed.. # Security update for libinput Announcement ID: SUSE-SU-2026:2523-1 Release Date: 2026-06-23T08:52:48Z Rating: important References: * bsc#1267852 Cross-References: * CVE-2026-50265 * CVE-2026-50292 CVSS scores: * CVE-2026-50265 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2026-50265 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50265 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 7.4 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.5 * SUSE Linux Enterprise High Performance Computing 15 SP5 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 * SUSE Linux Enterprise Server 15 SP5 * SUSE Linux Enterprise Server 15 SP5 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP5 An update that solves two vulnerabilities can now be installed. ## Description: This update for libinput fixes the following issues * CVE-2026-50265,CVE-2026-50292: crafted uinput devices can lead to local privilege escalation (bsc#1267852). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 15 SP5 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP5-LTSS-2026-2523=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-ESPOS-2026-2523=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP5 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP5-2026-2523=1 * openSUSE Leap 15.5 zypper in -t patch SUSE-2026-2523=1 * SUSE Linux EnterpriseHigh Performance Computing LTSS 15 SP5 zypper in -t patch SUSE-SLE-Product-HPC-15-SP5-LTSS-2026-2523=1 ## Package List: * SUSE Linux Enterprise Server for SAP Applications 15 SP5 (ppc64le x86_64) * libinput-debugsource-1.21.0-150500.3.3.1 * libinput10-debuginfo-1.21.0-150500.3.3.1 * libinput-udev-debuginfo-1.21.0-150500.3.3.1 * libinput-tools-debuginfo-1.21.0-150500.3.3.1 * libinput10-1.21.0-150500.3.3.1 * libinput-devel-1.21.0-150500.3.3.1 * libinput-udev-1.21.0-150500.3.3.1 * libinput-tools-1.21.0-150500.3.3.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP5 (aarch64 x86_64) * libinput-debugsource-1.21.0-150500.3.3.1 * libinput10-debuginfo-1.21.0-150500.3.3.1 * libinput-udev-debuginfo-1.21.0-150500.3.3.1 * libinput-tools-debuginfo-1.21.0-150500.3.3.1 * libinput10-1.21.0-150500.3.3.1 * libinput-devel-1.21.0-150500.3.3.1 * libinput-udev-1.21.0-150500.3.3.1 * libinput-tools-1.21.0-150500.3.3.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP5 (aarch64 x86_64) * libinput-debugsource-1.21.0-150500.3.3.1 * libinput10-debuginfo-1.21.0-150500.3.3.1 * libinput-udev-debuginfo-1.21.0-150500.3.3.1 * libinput-tools-debuginfo-1.21.0-150500.3.3.1 * libinput10-1.21.0-150500.3.3.1 * libinput-devel-1.21.0-150500.3.3.1 * libinput-udev-1.21.0-150500.3.3.1 * libinput-tools-1.21.0-150500.3.3.1 * openSUSE Leap 15.5 (aarch64 i586 ppc64le s390x x86_64) * libinput-debugsource-1.21.0-150500.3.3.1 * libinput10-debuginfo-1.21.0-150500.3.3.1 * libinput-udev-debuginfo-1.21.0-150500.3.3.1 * libinput-tools-debuginfo-1.21.0-150500.3.3.1 * libinput10-1.21.0-150500.3.3.1 * libinput-devel-1.21.0-150500.3.3.1 * libinput-debug-gui-1.21.0-150500.3.3.1 * libinput-udev-1.21.0-150500.3.3.1 * libinput-tools-1.21.0-150500.3.3.1 * libinput-debug-gui-debuginfo-1.21.0-150500.3.3.1 * libinput-extra-debugsource-1.21.0-150500.3.3.1 * openSUSE Leap 15.5 (x86_64) *libinput10-32bit-debuginfo-1.21.0-150500.3.3.1 * libinput10-32bit-1.21.0-150500.3.3.1 * openSUSE Leap 15.5 (aarch64_ilp32) * libinput10-64bit-1.21.0-150500.3.3.1 * libinput10-64bit-debuginfo-1.21.0-150500.3.3.1 * SUSE Linux Enterprise Server 15 SP5 LTSS (aarch64 ppc64le s390x x86_64) * libinput-debugsource-1.21.0-150500.3.3.1 * libinput10-debuginfo-1.21.0-150500.3.3.1 * libinput-udev-debuginfo-1.21.0-150500.3.3.1 * libinput-tools-debuginfo-1.21.0-150500.3.3.1 * libinput10-1.21.0-150500.3.3.1 * libinput-devel-1.21.0-150500.3.3.1 * libinput-udev-1.21.0-150500.3.3.1 * libinput-tools-1.21.0-150500.3.3.1 ## References: * https://www.suse.com/security/cve/CVE-2026-50265.html * https://www.suse.com/security/cve/CVE-2026-50292.html * https://bugzilla.suse.com/show_bug.cgi?id=1267852 . # Security update for libinput Announcement ID: SUSE-SU-2026:2523-1 Release Date: 2026-06-23T08:52:4. update, solves, vulnerabilities, installed, security, libinput, annou. . Severity: Important. LinuxSecurity.com Team
An update that solves two vulnerabilities can now be installed.. # Security update for libinput Announcement ID: SUSE-SU-2026:2524-1 Release Date: 2026-06-23T08:53:03Z Rating: important References: * bsc#1267852 Cross-References: * CVE-2026-50265 * CVE-2026-50292 CVSS scores: * CVE-2026-50265 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2026-50265 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50265 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 7.4 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * Basesystem Module 15-SP7 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise Real Time 15 SP7 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 An update that solves two vulnerabilities can now be installed. ## Description: This update for libinput fixes the following issues * CVE-2026-50265,CVE-2026-50292: crafted uinput devices can lead to local privilege escalation (bsc#1267852). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * Basesystem Module 15-SP7 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP7-2026-2524=1 ## Package List: * Basesystem Module 15-SP7 (aarch64 ppc64le s390x x86_64) * libinput-udev-1.27.1-150700.3.3.1 * libinput10-debuginfo-1.27.1-150700.3.3.1 * libinput-tools-1.27.1-150700.3.3.1 * libinput-devel-1.27.1-150700.3.3.1 * libinput-tools-debuginfo-1.27.1-150700.3.3.1 * libinput-udev-debuginfo-1.27.1-150700.3.3.1 * libinput10-1.27.1-150700.3.3.1 * libinput-debugsource-1.27.1-150700.3.3.1 ## References: * https://www.suse.com/security/cve/CVE-2026-50265.html *https://www.suse.com/security/cve/CVE-2026-50292.html * https://bugzilla.suse.com/show_bug.cgi?id=1267852 . Critical update for SUSE libinput addresses important vulnerabilities with local privilege escalation risks.. SUSE Linux, libinput update, security risks, privilege escalation, system security. . Severity: Important. LinuxSecurity.com Team
An update that solves two vulnerabilities can now be installed.. # Security update for libinput Announcement ID: SUSE-SU-2026:2529-1 Release Date: 2026-06-23T10:02:38Z Rating: important References: * bsc#1267852 Cross-References: * CVE-2026-50265 * CVE-2026-50292 CVSS scores: * CVE-2026-50265 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2026-50265 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50265 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 7.4 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP6 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that solves two vulnerabilities can now be installed. ## Description: This update for libinput fixes the following issues * CVE-2026-50265,CVE-2026-50292: crafted uinput devices can lead to local privilege escalation (bsc#1267852). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 15 SP6 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP6-LTSS-2026-2529=1 * openSUSE Leap 15.6 zypper in -t patch SUSE-2026-2529=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP6-2026-2529=1 ## Package List: * SUSE Linux Enterprise Server for SAP Applications 15 SP6 (ppc64le x86_64) * libinput10-1.25.0-150600.3.3.1 * libinput-udev-debuginfo-1.25.0-150600.3.3.1 * libinput-tools-debuginfo-1.25.0-150600.3.3.1 * libinput-devel-1.25.0-150600.3.3.1 * libinput-udev-1.25.0-150600.3.3.1 *libinput-tools-1.25.0-150600.3.3.1 * libinput-debugsource-1.25.0-150600.3.3.1 * libinput10-debuginfo-1.25.0-150600.3.3.1 * openSUSE Leap 15.6 (aarch64 i586 ppc64le s390x x86_64) * libinput10-1.25.0-150600.3.3.1 * libinput-udev-debuginfo-1.25.0-150600.3.3.1 * libinput-tools-debuginfo-1.25.0-150600.3.3.1 * libinput-devel-1.25.0-150600.3.3.1 * libinput-udev-1.25.0-150600.3.3.1 * libinput-tools-1.25.0-150600.3.3.1 * libinput-debug-gui-1.25.0-150600.3.3.1 * libinput-extra-debugsource-1.25.0-150600.3.3.1 * libinput-debugsource-1.25.0-150600.3.3.1 * libinput-debug-gui-debuginfo-1.25.0-150600.3.3.1 * libinput10-debuginfo-1.25.0-150600.3.3.1 * openSUSE Leap 15.6 (x86_64) * libinput10-32bit-1.25.0-150600.3.3.1 * libinput10-32bit-debuginfo-1.25.0-150600.3.3.1 * openSUSE Leap 15.6 (aarch64_ilp32) * libinput10-64bit-debuginfo-1.25.0-150600.3.3.1 * libinput10-64bit-1.25.0-150600.3.3.1 * SUSE Linux Enterprise Server 15 SP6 LTSS (aarch64 ppc64le s390x x86_64) * libinput10-1.25.0-150600.3.3.1 * libinput-udev-debuginfo-1.25.0-150600.3.3.1 * libinput-tools-debuginfo-1.25.0-150600.3.3.1 * libinput-devel-1.25.0-150600.3.3.1 * libinput-udev-1.25.0-150600.3.3.1 * libinput-tools-1.25.0-150600.3.3.1 * libinput-debugsource-1.25.0-150600.3.3.1 * libinput10-debuginfo-1.25.0-150600.3.3.1 ## References: * https://www.suse.com/security/cve/CVE-2026-50265.html * https://www.suse.com/security/cve/CVE-2026-50292.html * https://bugzilla.suse.com/show_bug.cgi?id=1267852 . Critical libinput security update for SUSE resolves local privilege escalation risks, ensuring system integrity. Act now!. SUSE libinput update security local privilege. . Severity: Important. LinuxSecurity.com Team
An update that solves two vulnerabilities can now be installed.. # Security update for libinput Announcement ID: SUSE-SU-2026:2529-1 Release Date: 2026-06-23T10:02:38Z Rating: important References: * bsc#1267852 Cross-References: * CVE-2026-50265 * CVE-2026-50292 CVSS scores: * CVE-2026-50265 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2026-50265 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50265 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 7.4 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP6 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that solves two vulnerabilities can now be installed. ## Description: This update for libinput fixes the following issues * CVE-2026-50265,CVE-2026-50292: crafted uinput devices can lead to local privilege escalation (bsc#1267852). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 15 SP6 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP6-LTSS-2026-2529=1 * openSUSE Leap 15.6 zypper in -t patch SUSE-2026-2529=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP6-2026-2529=1 ## Package List: * SUSE Linux Enterprise Server for SAP Applications 15 SP6 (ppc64le x86_64) * libinput10-1.25.0-150600.3.3.1 * libinput-udev-debuginfo-1.25.0-150600.3.3.1 * libinput-tools-debuginfo-1.25.0-150600.3.3.1 * libinput-devel-1.25.0-150600.3.3.1 * libinput-udev-1.25.0-150600.3.3.1 *libinput-tools-1.25.0-150600.3.3.1 * libinput-debugsource-1.25.0-150600.3.3.1 * libinput10-debuginfo-1.25.0-150600.3.3.1 * openSUSE Leap 15.6 (aarch64 i586 ppc64le s390x x86_64) * libinput10-1.25.0-150600.3.3.1 * libinput-udev-debuginfo-1.25.0-150600.3.3.1 * libinput-tools-debuginfo-1.25.0-150600.3.3.1 * libinput-devel-1.25.0-150600.3.3.1 * libinput-udev-1.25.0-150600.3.3.1 * libinput-tools-1.25.0-150600.3.3.1 * libinput-debug-gui-1.25.0-150600.3.3.1 * libinput-extra-debugsource-1.25.0-150600.3.3.1 * libinput-debugsource-1.25.0-150600.3.3.1 * libinput-debug-gui-debuginfo-1.25.0-150600.3.3.1 * libinput10-debuginfo-1.25.0-150600.3.3.1 * openSUSE Leap 15.6 (x86_64) * libinput10-32bit-1.25.0-150600.3.3.1 * libinput10-32bit-debuginfo-1.25.0-150600.3.3.1 * openSUSE Leap 15.6 (aarch64_ilp32) * libinput10-64bit-debuginfo-1.25.0-150600.3.3.1 * libinput10-64bit-1.25.0-150600.3.3.1 * SUSE Linux Enterprise Server 15 SP6 LTSS (aarch64 ppc64le s390x x86_64) * libinput10-1.25.0-150600.3.3.1 * libinput-udev-debuginfo-1.25.0-150600.3.3.1 * libinput-tools-debuginfo-1.25.0-150600.3.3.1 * libinput-devel-1.25.0-150600.3.3.1 * libinput-udev-1.25.0-150600.3.3.1 * libinput-tools-1.25.0-150600.3.3.1 * libinput-debugsource-1.25.0-150600.3.3.1 * libinput10-debuginfo-1.25.0-150600.3.3.1 ## References: * https://www.suse.com/security/cve/CVE-2026-50265.html * https://www.suse.com/security/cve/CVE-2026-50292.html * https://bugzilla.suse.com/show_bug.cgi?id=1267852 . # Security update for libinput Announcement ID: SUSE-SU-2026:2529-1 Release Date: 2026-06-23T10:02:3. update, solves, vulnerabilities, installed, security, libinput, annou. . Severity: Important. LinuxSecurity.com Team
An update that solves two vulnerabilities can now be installed.. # Security update for libinput Announcement ID: SUSE-SU-2026:2530-1 Release Date: 2026-06-23T10:03:23Z Rating: important References: * bsc#1267852 Cross-References: * CVE-2026-50265 * CVE-2026-50292 CVSS scores: * CVE-2026-50265 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2026-50265 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50265 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 7.4 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP4 An update that solves two vulnerabilities can now be installed. ## Description: This update for libinput fixes the following issues * CVE-2026-50265,CVE-2026-50292: crafted uinput devices can lead to local privilege escalation (bsc#1267852). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-2530=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2026-2530=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2026-2530=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patchSUSE-SLE-Product-HPC-15-SP4-LTSS-2026-2530=1 * openSUSE Leap 15.4 zypper in -t patch SUSE-2026-2530=1 ## Package List: * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * libinput10-1.19.4-150400.3.3.1 * libinput10-debuginfo-1.19.4-150400.3.3.1 * libinput-udev-1.19.4-150400.3.3.1 * libinput-debugsource-1.19.4-150400.3.3.1 * libinput-tools-1.19.4-150400.3.3.1 * libinput-tools-debuginfo-1.19.4-150400.3.3.1 * libinput-devel-1.19.4-150400.3.3.1 * libinput-udev-debuginfo-1.19.4-150400.3.3.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * libinput10-1.19.4-150400.3.3.1 * libinput10-debuginfo-1.19.4-150400.3.3.1 * libinput-udev-1.19.4-150400.3.3.1 * libinput-debugsource-1.19.4-150400.3.3.1 * libinput-tools-1.19.4-150400.3.3.1 * libinput-tools-debuginfo-1.19.4-150400.3.3.1 * libinput-devel-1.19.4-150400.3.3.1 * libinput-udev-debuginfo-1.19.4-150400.3.3.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * libinput10-1.19.4-150400.3.3.1 * libinput10-debuginfo-1.19.4-150400.3.3.1 * libinput-udev-1.19.4-150400.3.3.1 * libinput-debugsource-1.19.4-150400.3.3.1 * libinput-tools-1.19.4-150400.3.3.1 * libinput-tools-debuginfo-1.19.4-150400.3.3.1 * libinput-devel-1.19.4-150400.3.3.1 * libinput-udev-debuginfo-1.19.4-150400.3.3.1 * openSUSE Leap 15.4 (aarch64 i586 ppc64le s390x x86_64) * libinput10-1.19.4-150400.3.3.1 * libinput-extra-debugsource-1.19.4-150400.3.3.1 * libinput10-debuginfo-1.19.4-150400.3.3.1 * libinput-udev-1.19.4-150400.3.3.1 * libinput-debugsource-1.19.4-150400.3.3.1 * libinput-tools-1.19.4-150400.3.3.1 * libinput-tools-debuginfo-1.19.4-150400.3.3.1 * libinput-devel-1.19.4-150400.3.3.1 * libinput-udev-debuginfo-1.19.4-150400.3.3.1 * libinput-debug-gui-debuginfo-1.19.4-150400.3.3.1 * libinput-debug-gui-1.19.4-150400.3.3.1 * openSUSE Leap 15.4 (x86_64) *libinput10-32bit-debuginfo-1.19.4-150400.3.3.1 * libinput10-32bit-1.19.4-150400.3.3.1 * openSUSE Leap 15.4 (aarch64_ilp32) * libinput10-64bit-1.19.4-150400.3.3.1 * libinput10-64bit-debuginfo-1.19.4-150400.3.3.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * libinput10-1.19.4-150400.3.3.1 * libinput10-debuginfo-1.19.4-150400.3.3.1 * libinput-udev-1.19.4-150400.3.3.1 * libinput-debugsource-1.19.4-150400.3.3.1 * libinput-tools-1.19.4-150400.3.3.1 * libinput-tools-debuginfo-1.19.4-150400.3.3.1 * libinput-devel-1.19.4-150400.3.3.1 * libinput-udev-debuginfo-1.19.4-150400.3.3.1 ## References: * https://www.suse.com/security/cve/CVE-2026-50265.html * https://www.suse.com/security/cve/CVE-2026-50292.html * https://bugzilla.suse.com/show_bug.cgi?id=1267852 . # Security update for libinput Announcement ID: SUSE-SU-2026:2530-1 Release Date: 2026-06-23T10:03:2. update, solves, vulnerabilities, installed, security, libinput, annou. . Severity: Important. LinuxSecurity.com Team
An update that solves two vulnerabilities can now be installed.. # Security update for libinput Announcement ID: SUSE-SU-2026:2530-1 Release Date: 2026-06-23T10:03:23Z Rating: important References: * bsc#1267852 Cross-References: * CVE-2026-50265 * CVE-2026-50292 CVSS scores: * CVE-2026-50265 ( SUSE ): 7.3 CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2026-50265 ( SUSE ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50265 ( NVD ): 7.0 CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 7.4 CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2026-50292 ( NVD ): 9.8 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise High Performance Computing 15 SP4 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 * SUSE Linux Enterprise Server 15 SP4 * SUSE Linux Enterprise Server 15 SP4 LTSS * SUSE Linux Enterprise Server for SAP Applications 15 SP4 An update that solves two vulnerabilities can now be installed. ## Description: This update for libinput fixes the following issues * CVE-2026-50265,CVE-2026-50292: crafted uinput devices can lead to local privilege escalation (bsc#1267852). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 15 SP4 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP4-LTSS-2026-2530=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP4 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP4-2026-2530=1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 zypper in -t patch SUSE-SLE-Product-HPC-15-SP4-ESPOS-2026-2530=1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 zypper in -t patchSUSE-SLE-Product-HPC-15-SP4-LTSS-2026-2530=1 * openSUSE Leap 15.4 zypper in -t patch SUSE-2026-2530=1 ## Package List: * SUSE Linux Enterprise Server for SAP Applications 15 SP4 (ppc64le x86_64) * libinput10-1.19.4-150400.3.3.1 * libinput10-debuginfo-1.19.4-150400.3.3.1 * libinput-udev-1.19.4-150400.3.3.1 * libinput-debugsource-1.19.4-150400.3.3.1 * libinput-tools-1.19.4-150400.3.3.1 * libinput-tools-debuginfo-1.19.4-150400.3.3.1 * libinput-devel-1.19.4-150400.3.3.1 * libinput-udev-debuginfo-1.19.4-150400.3.3.1 * SUSE Linux Enterprise High Performance Computing ESPOS 15 SP4 (aarch64 x86_64) * libinput10-1.19.4-150400.3.3.1 * libinput10-debuginfo-1.19.4-150400.3.3.1 * libinput-udev-1.19.4-150400.3.3.1 * libinput-debugsource-1.19.4-150400.3.3.1 * libinput-tools-1.19.4-150400.3.3.1 * libinput-tools-debuginfo-1.19.4-150400.3.3.1 * libinput-devel-1.19.4-150400.3.3.1 * libinput-udev-debuginfo-1.19.4-150400.3.3.1 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP4 (aarch64 x86_64) * libinput10-1.19.4-150400.3.3.1 * libinput10-debuginfo-1.19.4-150400.3.3.1 * libinput-udev-1.19.4-150400.3.3.1 * libinput-debugsource-1.19.4-150400.3.3.1 * libinput-tools-1.19.4-150400.3.3.1 * libinput-tools-debuginfo-1.19.4-150400.3.3.1 * libinput-devel-1.19.4-150400.3.3.1 * libinput-udev-debuginfo-1.19.4-150400.3.3.1 * openSUSE Leap 15.4 (aarch64 i586 ppc64le s390x x86_64) * libinput10-1.19.4-150400.3.3.1 * libinput-extra-debugsource-1.19.4-150400.3.3.1 * libinput10-debuginfo-1.19.4-150400.3.3.1 * libinput-udev-1.19.4-150400.3.3.1 * libinput-debugsource-1.19.4-150400.3.3.1 * libinput-tools-1.19.4-150400.3.3.1 * libinput-tools-debuginfo-1.19.4-150400.3.3.1 * libinput-devel-1.19.4-150400.3.3.1 * libinput-udev-debuginfo-1.19.4-150400.3.3.1 * libinput-debug-gui-debuginfo-1.19.4-150400.3.3.1 * libinput-debug-gui-1.19.4-150400.3.3.1 * openSUSE Leap 15.4 (x86_64) *libinput10-32bit-debuginfo-1.19.4-150400.3.3.1 * libinput10-32bit-1.19.4-150400.3.3.1 * openSUSE Leap 15.4 (aarch64_ilp32) * libinput10-64bit-1.19.4-150400.3.3.1 * libinput10-64bit-debuginfo-1.19.4-150400.3.3.1 * SUSE Linux Enterprise Server 15 SP4 LTSS (aarch64 ppc64le s390x x86_64) * libinput10-1.19.4-150400.3.3.1 * libinput10-debuginfo-1.19.4-150400.3.3.1 * libinput-udev-1.19.4-150400.3.3.1 * libinput-debugsource-1.19.4-150400.3.3.1 * libinput-tools-1.19.4-150400.3.3.1 * libinput-tools-debuginfo-1.19.4-150400.3.3.1 * libinput-devel-1.19.4-150400.3.3.1 * libinput-udev-debuginfo-1.19.4-150400.3.3.1 ## References: * https://www.suse.com/security/cve/CVE-2026-50265.html * https://www.suse.com/security/cve/CVE-2026-50292.html * https://bugzilla.suse.com/show_bug.cgi?id=1267852 . Critical security update for libinput addresses two issues that could lead to local privilege escalation in SUSE systems.. SUSE Linux, libinput update, security patch, local privilege escalation, SUSE advisories. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.