RHSA-2026:47084: Important: libXfont2 security update
X.Org X11 libXfont2 runtime librarySecurity Fix(es): libXfont2: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow (CVE-2026-56001) libXfont2: PCF Font Parsing Heap Buffer Overflow (CVE-2026-56002) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
libXfont2to a version that resolves this vulnerability.Patch CVE-2026-56002 - Upgrade
Upgrade
libXfont2to a version that resolves this vulnerability.Patch CVE-2026-56001
Event History
Frequently Asked Questions
What is the severity of RHSA-2026:47084?
The severity of RHSA-2026:47084 is classified as important.
What vulnerabilities does RHSA-2026:47084 address?
RHSA-2026:47084 addresses CVE-2026-56001 and CVE-2026-56002, which involve integer overflow and heap buffer overflow issues in libXfont2.
How do I fix RHSA-2026:47084?
To fix RHSA-2026:47084, you should update the libXfont2 package to the latest version available in your distribution's repository.
What are the potential impacts of the vulnerabilities in RHSA-2026:47084?
The vulnerabilities in RHSA-2026:47084 could allow an attacker to exploit the Integer Overflow and Heap Buffer Overflow, possibly leading to remote code execution.
Which library is affected by RHSA-2026:47084?
The affected library in RHSA-2026:47084 is the X.Org X11 libXfont2 runtime library.