RHSA-2026:61755: Important: libXfont2 security update
Important: libXfont2 security update
Other sources
X.Org X11 libXfont2 runtime librarySecurity Fix(es): libxfont2: Font Server Client encoding[] Out-Of-Bounds Read/Write (CVE-2026-59679) libxfonts2: libXfont2: Privilege Escalation via Heap Buffer Overflow in Font Server Client (CVE-2026-44950) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Apply the libXfont2 security update (X.Org X11 libXfont2 runtime library) to address the privilege escalation heap buffer overflow (CVE-2026-44950) and the font server client encoding out-of-bounds read/write (CVE-2026-59679), following the application instructions in Red Hat article 11258.
Event History
Frequently Asked Questions
Which environments are identified as affected by this advisory?
The advisory lists Red Hat Enterprise Linux for x86_64 - Extended Life Cycle Long Life and Red Hat Enterprise Linux Server - AUS.
How should this update be prioritized?
The advisory is classified as Important and has a high severity rating of 7, with an overall risk value of 33.