PT-2026-69024 · Libxfont2 · Libxfont2

CVE-2026-44950

·

Published

2026-08-05

·

Updated

2026-09-10

CVSS v3.1

9.0

Critical

VectorAV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions libXfont2 versions prior to 2.0.7-3.1
Description A heap buffer overflow occurs in the Font Server Client when handling cumulative glyph data. A heap buffer overflow is a memory corruption issue where a program writes more data to a heap-allocated memory block than it can hold, potentially leading to crashes or arbitrary code execution.
Recommendations Update to version 2.0.7-3.1.

Fix

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALSA-2026:55446
ALSA-2026:55447
ALSA-2026:55448
CVE-2026-44950
ECHO-3C27-FC81-AC46
OESA-2026-3466
OPENSUSE-SU-2026:11463-1
OPENSUSE-SU-2026:21539-1
RHSA-2026:55446
RHSA-2026:55447
RHSA-2026:55448
RHSA-2026:59311
RHSA-2026:59312
RHSA-2026:61390
RHSA-2026:61755
RHSA-2026:61756
SUSE-SU-2026:23128-1
SUSE-SU-2026:23151-1
SUSE-SU-2026:3499-1
SUSE-SU-2026:3500-1

Affected Products

Libxfont2