Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-56003

Опубликовано: 08 июл. 2026
Источник: debian
EPSS Низкий

Описание

A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXfont2 before 2.0.8 could be used by attackers using authenticated X clients to execute code within the X server.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libxfontfixed1:2.0.8-1package

Примечания

  • https://www.openwall.com/lists/oss-security/2026/07/08/1

  • Fixed by: https://gitlab.freedesktop.org/xorg/lib/libxfont/-/commit/dff957a5158da038a282a59a31fe736702732939 (libXfont2-2.0.8)

EPSS

Процентиль: 30%
0.00373
Низкий

Связанные уязвимости

CVSS3: 8.5
ubuntu
23 дня назад

A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXfont2 before 2.0.8 could be used by attackers using authenticated X clients to execute code within the X server.

CVSS3: 7.3
redhat
24 дня назад

A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXfont2 before 2.0.8 could be used by attackers using authenticated X clients to execute code within the X server.

CVSS3: 8.5
nvd
23 дня назад

A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXfont2 before 2.0.8 could be used by attackers using authenticated X clients to execute code within the X server.

CVSS3: 8.5
msrc
23 дня назад

libXfont2 computeProps Property Buffer Heap Buffer Overflow

CVSS3: 8.5
github
23 дня назад

A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXfont2 before 2.0.8 could be used by attackers using authenticated X clients to execute code within the X server.

EPSS

Процентиль: 30%
0.00373
Низкий