Vulnerability Description
A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 due to an overflowing 32bit size could be used by attackers able to access the X Server to execute code within the X server cont
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| X | Libxfont | >= 2.0.0, < 2.0.8 |
Related Weaknesses (CWE)
References
- https://gitlab.freedesktop.org/xorg/lib/libxfont/-/commit/be0b08e2d354138d3222b4Patch
- https://www.openwall.com/lists/oss-security/2026/07/08/1Mailing ListPatchThird Party Advisory
FAQ
What is CVE-2026-56001?
CVE-2026-56001 is a vulnerability with a CVSS score of 8.5 (HIGH). A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 due to an overflowing 32bit size could be used by attackers able to access the X Server to execute code within the X server cont
How severe is CVE-2026-56001?
CVE-2026-56001 has been rated HIGH with a CVSS base score of 8.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-56001?
Check the references section above for vendor advisories and patch information. Affected products include: X Libxfont.