CVE-2026-55999
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD
Description
Local attackers with a X connection able to provide PCX fonts to the X
server xorg-server before 21.2.24 and xwayland before 24.1.13 could
cause a heap buffer overflow via SetFont due to missing glyph boundary checks.
Affected (2)
References (2)
Source: meissner@suse.de
Patch
Source: meissner@suse.de
Mailing ListPatchThird Party Advisory
Timeline
No history available yet.