CVE-2026-56001: X Libxfont
High severity, CVSS 8.8. EPSS: 0.4% chance of exploitation in the next 30 days.
A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 due to an overflowing 32bit size could be used by attackers able to access the X Server to execute code within the X server cont
Affected products
- X Libxfont: from 2.0.0, before 2.0.8 (fixed in 2.0.8)
Published 2026-07-08. Last modified 2026-07-09.