AUGUST 25, 2026
Live Feed
Back to database
Case File

CVE-2026-56003

HIGH · CVSS 8.5 EPSS 0.37%

Source: NVD + CISA KEV + EPSS · Published 2026-07-08 · Last synced 2026-08-07

CyberRota Analysis

AI-Generated

A heap buffer overflow vulnerability exists in libXfont2 versions prior to 2.0.8, stemming from inadequate size checks when parsing PCF files in the ComputeScaledProperties() function. This flaw allows authenticated X clients to execute arbitrary code within the X server, potentially compromising system integrity. Organizations utilizing affected versions of libXfont2 should prioritize patching to mitigate the risk of exploitation.

CVE
CVE-2026-56003
Severity
HIGH
CVSS
8.5
EPSS
0.37%

Original NVD Description

A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXfont2 before 2.0.8 could be used by attackers using authenticated X clients to execute code within the X server.

Related CVEs

Other vulnerabilities affecting the same vendor(s)