Vulnerabilities
Vulnerable Software
X:  >> Libxfont  >> 2.0.2  Security Vulnerabilities
A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2.0.8  allows attackers authenticated as X client to execute code within the X server.
CVSS Score
8.5
EPSS Score
0.006
Published
2026-07-08
A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXfont2 before 2.0.8 could be used by attackers using authenticated X clients to execute code within the X server.
CVSS Score
8.5
EPSS Score
0.006
Published
2026-07-08
A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 due to an overflowing 32bit size could be used by attackers able to access the X Server to execute code within the X server cont
CVSS Score
8.5
EPSS Score
0.004
Published
2026-07-08
In libXfont before 1.5.4 and libXfont2 before 2.0.3, a local attacker can open (but not read) files on the system as root, triggering tape rewinds, watchdogs, or similar mechanisms that can be triggered by opening files.
CVSS Score
5.5
EPSS Score
0.004
Published
2017-12-01


Contact Us

Shodan ® - All rights reserved