libXfont2-2.0.3-12.el9_8.1

エラータID: AXSA:2026-1539:02

Release date: 
Friday, August 14, 2026 - 15:03
Subject: 
libXfont2-2.0.3-12.el9_8.1
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
High
Description: 

X.Org X11 libXfont2 runtime library

Security Fix(es):

* libXfont2: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow (CVE-2026-56001)
* libXfont2: PCF Font Parsing Heap Buffer Overflow (CVE-2026-56002)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVE-2026-56001
A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 due to an overflowing 32bit size could be used by attackers able to access the X Server to execute code within the X server cont
CVE-2026-56002
A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2.0.8  allows attackers authenticated as X client to execute code within the X server.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. libXfont2-2.0.3-12.el9_8.1.src.rpm
    MD5: 63dbc0f43ce812bde7d04b8ba5db54c0
    SHA-256: 9e844d0f01453f565cd7c6aaec640d3cd9358e860369e0905baaab1a9cb151b7
    Size: 499.39 kB

Asianux Server 9 for x86_64
  1. libXfont2-2.0.3-12.el9_8.1.i686.rpm
    MD5: 7025da3c24b9586fdbb3cd044e90e637
    SHA-256: 39cc1c9783f62be5115dc443433077af4938b75db5c65e91f535eb35102a72c5
    Size: 142.19 kB
  2. libXfont2-2.0.3-12.el9_8.1.x86_64.rpm
    MD5: 50d83b35f3792493d5a3f7eefa3bc7b2
    SHA-256: 6d9182e2076697fca63e622d0733c87f435d425b4084f2e064ac33dd2e70d747
    Size: 142.36 kB
  3. libXfont2-devel-2.0.3-12.el9_8.1.i686.rpm
    MD5: b5a66aa45b79a3dc52eab5db0302f095
    SHA-256: 8a54d9f80f51918672c473382111721f595b2075c25f069bbb0754df8e547034
    Size: 9.76 kB
  4. libXfont2-devel-2.0.3-12.el9_8.1.x86_64.rpm
    MD5: ef890d62b6d881b259be16a31e66a167
    SHA-256: fde886b0cd80476d2163caded6d9151896dd6a9c9bcdf59a47d5d0e747d69ed2
    Size: 9.75 kB