Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-56003

Опубликовано: 08 июл. 2026
Источник: redhat
CVSS3: 7.3
EPSS Низкий

Описание

A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXfont2 before 2.0.8 could be used by attackers using authenticated X clients to execute code within the X server.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10libXfont2Affected
Red Hat Enterprise Linux 9libXfont2Affected
Red Hat Enterprise Linux 10.0 Extended Update SupportlibXfont2FixedRHSA-2026:5106106.08.2026
Red Hat Enterprise Linux 7 Extended Lifecycle SupportlibXfont2FixedRHSA-2026:5106306.08.2026
Red Hat Enterprise Linux 8libXfont2FixedRHSA-2026:4710328.07.2026
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update SupportlibXfont2FixedRHSA-2026:5106006.08.2026
Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-OnlibXfont2FixedRHSA-2026:5106006.08.2026
Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update SupportlibXfont2FixedRHSA-2026:5106606.08.2026
Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-OnlibXfont2FixedRHSA-2026:5106606.08.2026
Red Hat Enterprise Linux 8.8 Telecommunications Update ServicelibXfont2FixedRHSA-2026:5106706.08.2026

Показывать по

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=2496642libXfont2: computeProps Property Buffer Heap Buffer Overflow

EPSS

Процентиль: 34%
0.004
Низкий

7.3 High

CVSS3

Связанные уязвимости

CVSS3: 8.5
ubuntu
2 месяца назад

A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXfont2 before 2.0.8 could be used by attackers using authenticated X clients to execute code within the X server.

CVSS3: 8.5
nvd
2 месяца назад

A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXfont2 before 2.0.8 could be used by attackers using authenticated X clients to execute code within the X server.

CVSS3: 8.5
msrc
2 месяца назад

libXfont2 computeProps Property Buffer Heap Buffer Overflow

CVSS3: 8.5
debian
2 месяца назад

A heap buffer overflow due to missing size checking in the property bu ...

CVSS3: 8.5
github
2 месяца назад

A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXfont2 before 2.0.8 could be used by attackers using authenticated X clients to execute code within the X server.

EPSS

Процентиль: 34%
0.004
Низкий

7.3 High

CVSS3