USN-8560-1: libXfont vulnerabilities
It was discovered that libXfont incorrectly handled scaling bitmap
fonts, leading to a heap buffer overflow. An attacker able to access
the X server could use this issue to cause libXfont to crash,
resulting in a denial of service, or possibly execute arbitrary code.
(CVE-2026-56001)
It was discovered that libXfont did not properly check glyph bounds
when reading PCF fonts, leading to a heap buffer overflow. An
authenticated X client could use this issue to cause libXfont to
crash, resulting in a denial of service, or possibly execute arbitrary
code. (CVE-2026-56002)
It was discovered that libXfont did not properly check the size of the
property buffer when parsing PCF fonts, leading to a heap buffer
overflow. An authenticated X client could use this issue to cause
libXfont to crash, resulting in a denial of service, or possibly
execute arbitrary code. (CVE-2026-56003)