Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-56001

Опубликовано: 08 июл. 2026
Источник: redhat
CVSS3: 7.3

Описание

A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 due to an overflowing 32bit size could be used by attackers able to access the X Server to execute code within the X server cont

A flaw was found in libXfont2. In the BitmapScaleBitmaps() function, an integer overflow can occur when calculating the memory needed for font glyphs. This overflow leads to a heap buffer overflow, where a smaller-than-required memory buffer is allocated. A local attacker can exploit this by loading a specially crafted PCF font, potentially leading to arbitrary code execution or a denial of service.

Отчет

This flaw in libXfont2 is rated as Important. A local attacker could exploit an integer overflow in the BitmapScaleBitmaps() function, leading to a heap buffer overflow and potential arbitrary code execution or denial of service. This vulnerability requires the processing of a specially crafted PCF font, typically through an X server or an application configured to load untrusted font files.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 7libXfont2Affected
Red Hat Enterprise Linux 9libXfont2Affected
Red Hat Enterprise Linux 10libXfont2FixedRHSA-2026:4707928.07.2026
Red Hat Enterprise Linux 8libXfont2FixedRHSA-2026:4710328.07.2026

Показывать по

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=2496640libXfont2: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow

7.3 High

CVSS3

Связанные уязвимости

CVSS3: 8.5
ubuntu
23 дня назад

A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 due to an overflowing 32bit size could be used by attackers able to access the X Server to execute code within the X server cont

CVSS3: 8.5
nvd
23 дня назад

A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 due to an overflowing 32bit size could be used by attackers able to access the X Server to execute code within the X server cont

CVSS3: 8.5
msrc
23 дня назад

libXfont2 BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow

CVSS3: 8.5
debian
23 дня назад

A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 ...

CVSS3: 8.5
github
23 дня назад

A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 due to an overflowing 32bit size could be used by attackers able to access the X Server to execute code within the X server cont

7.3 High

CVSS3