<Vulnerability name="CVE-2026-59679">
    <DocumentDistribution xml:lang="en">Copyright © 2012 Red Hat, Inc. All rights reserved.</DocumentDistribution>
    <ThreatSeverity>Important</ThreatSeverity>
    <PublicDate>2026-08-05T10:00:00</PublicDate>
    <Bugzilla id="2509620" url="https://bugzilla.redhat.com/show_bug.cgi?id=2509620" xml:lang="en:us">
libxfont2: Font Server Client encoding[] Out-Of-Bounds Read/Write
    </Bugzilla>
    <CVSS3 status="verified">
        <CVSS3BaseScore>7.5</CVSS3BaseScore>
        <CVSS3ScoringVector>CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H</CVSS3ScoringVector>
    </CVSS3>
    <CWE>CWE-125</CWE>
    <Details xml:lang="en:us" source="Red Hat">
A flaw was found in the libXfont2 font-server client. A remote attacker, by operating a malicious font server, could exploit an out-of-bounds read/write vulnerability. This occurs because the client incorrectly handles font data, leading to an out-of-bounds memory access. This can lead to privilege escalation if the X server runs with root privileges, or a denial of service (crash) if it runs as an unprivileged user.
    </Details>
    <Statement xml:lang="en:us">
This flaw in libXfont2 could lead to privilege escalation or denial of service. A remote attacker operating a malicious font server could exploit an out-of-bounds memory access in the font-server client. This is rated Important because while privilege escalation requires the X server to run as root (not a default in modern Red Hat Enterprise Linux), denial of service remains a risk for users of graphical environments who connect to untrusted font servers.
    </Statement>
    <Mitigation xml:lang="en:us">
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base, or stability.
    </Mitigation>
    <AffectedRelease cpe="cpe:/o:redhat:enterprise_linux:10.2">
        <ProductName>Red Hat Enterprise Linux 10</ProductName>
        <ReleaseDate>2026-08-17T00:00:00Z</ReleaseDate>
        <Advisory type="RHSA" url="https://access.redhat.com/errata/RHSA-2026:55448">RHSA-2026:55448</Advisory>
        <Package name="libXfont2">libXfont2-0:2.0.6-5.el10_2.3</Package>
    </AffectedRelease>
    <AffectedRelease cpe="cpe:/a:redhat:enterprise_linux:8">
        <ProductName>Red Hat Enterprise Linux 8</ProductName>
        <ReleaseDate>2026-08-17T00:00:00Z</ReleaseDate>
        <Advisory type="RHSA" url="https://access.redhat.com/errata/RHSA-2026:55446">RHSA-2026:55446</Advisory>
        <Package name="libXfont2">libXfont2-0:2.0.3-2.el8_10.3</Package>
    </AffectedRelease>
    <AffectedRelease cpe="cpe:/a:redhat:enterprise_linux:9">
        <ProductName>Red Hat Enterprise Linux 9</ProductName>
        <ReleaseDate>2026-08-17T00:00:00Z</ReleaseDate>
        <Advisory type="RHSA" url="https://access.redhat.com/errata/RHSA-2026:55447">RHSA-2026:55447</Advisory>
        <Package name="libXfont2">libXfont2-0:2.0.3-12.el9_8.3</Package>
    </AffectedRelease>
    <PackageState cpe="cpe:/o:redhat:enterprise_linux:7">
        <ProductName>Red Hat Enterprise Linux 7</ProductName>
        <FixState>Affected</FixState>
        <PackageName>libXfont2</PackageName>
    </PackageState>
    <References xml:lang="en:us">
https://www.cve.org/CVERecord?id=CVE-2026-59679
https://nvd.nist.gov/vuln/detail/CVE-2026-59679
    </References>
</Vulnerability>