CVE-2026-44950
Description
Important: libXfont2 security update
Predictions
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Mitigation details
Description libxfonts2: libXfont2: Privilege Escalation via Heap Buffer Overflow in Font Server Client Red Hat statement This is an Important flaw. A heap buffer overflow in the `libXfont2` font server client can be triggered by a malicious font server. If the X server runs as root, this could lead to privilege escalation; otherwise, it results in a denial of service. Red Hat Enterprise Linux…
Description
libxfonts2: libXfont2: Privilege Escalation via Heap Buffer Overflow in Font Server Client
Red Hat statement
This is an Important flaw. A heap buffer overflow in the `libXfont2` font server client can be triggered by a malicious font server. If the X server runs as root, this could lead to privilege escalation; otherwise, it results in a denial of service. Red Hat Enterprise Linux typically runs the X server as an unprivileged user, mitigating the privilege escalation risk but still allowing for denial of service.
CVSS v3: 7.5 (CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H)
Errata / fixed releases
| Product | Package | Advisory | Released |
|---|---|---|---|
| Red Hat Enterprise Linux 10 | libXfont2-0:2.0.6-5.el10_2.3 | RHSA-2026:55448 | 2026-08-17T00:00:00Z |
| Red Hat Enterprise Linux 8 | libXfont2-0:2.0.3-2.el8_10.3 | RHSA-2026:55446 | 2026-08-17T00:00:00Z |
| Red Hat Enterprise Linux 9 | libXfont2-0:2.0.3-12.el9_8.3 | RHSA-2026:55447 | 2026-08-17T00:00:00Z |
Package state
| Product | Package | State |
|---|---|---|
| Red Hat Enterprise Linux 7 | libXfont2 | Affected |
Apply commands
yum update -y libXfont2
# or:
dnf upgrade -y libXfont2
Affected
| Vendor | Product | Version |
|---|---|---|
| redhat | Red Hat Enterprise Linux 7 | Affected |
OS impact
SUSE Affected 1 release
| Version | Status | Fixed in |
|---|---|---|
| — | Affected | — |
Debian Mixed 5 releases
| Version | Status | Fixed in |
|---|---|---|
| trixie | Affected | — |
| sid | Fixed | 1:2.0.9-1 |
| forky | Fixed | 1:2.0.9-1 |
| bullseye | Affected | — |
| bookworm | Affected | — |
AlmaLinux Fixed 1 release
| Version | Status | Fixed in |
|---|---|---|
| 8 | Fixed | libXfont2-devel-2.0.3-2.el8_10.3.i686.rpm |
References
Community-verified mitigations for this CVE will appear above when contributors publish them.
Verify integrity in audit chain (admin only). AS-IS.