Vulnerabilidad · Publicado 08/07/2026 · Actualizado 01/08/2026
Local attackers with a X connection able to provide PCX fonts to the X
server xorg-server before 21.2.24 and xwayland before 24.1.13 could
cause a heap buffer overflow via SetFont due to missing glyph boundary checks.
Local attackers with a X connection able to provide PCX fonts to the X server xorg-server before 21.2.24 and xwayland before 24.1.13 could cause a heap buffer overflow via SetFont due to missing glyph boundary checks.
Score: 8.5/10 — Severidad: HIGH — Estado NIST: Analyzed
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
X server, Xwayland — X.org
CWE-122
Publicado en NIST NVD.