← Back

CVE-2026-34000

nvd nist
Published: May 5, 2026Modified: Jun 17, 2026

JSON object

Loading...
9.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Exploitability: 3.9 / Impact: 5.2
Source: NVD

Description

A flaw was found in the X.Org X server. This out-of-bounds read vulnerability in the XKB geometry processing, specifically within the `CheckSetGeom()` and `XkbAddGeomKeyAlias` functions, allows an attacker to read uninitialized or out-of-bounds memory. An attacker with a connection to the X11 server, either locally or remotely, can exploit this without user interaction. This could lead to the disclosure of memory contents or cause a denial of service by crashing the server.

Affected (6)

1 product
Enterprise Linux
1 product
X Server
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Redhat
Version 10.0
Version 6.0
Version 7.0
Version 8.0
Version 9.0
All versions

References (27)

Source: secalert@redhat.com
Third Party Advisory
Source: secalert@redhat.com
Issue TrackingThird Party Advisory

Timeline

No history available yet.