ZDI-26-408: X.Org Server ComputeScaledProperties Heap-based Buffer Overflow Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of X.Org Server. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-56003.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-26-408?
ZDI-26-408 has a CVSS rating of 7.8, indicating a high severity level.
How do I fix ZDI-26-408?
To fix ZDI-26-408, ensure that you apply the latest security patches provided for X.Org Server.
What types of attacks can ZDI-26-408 facilitate?
ZDI-26-408 can facilitate privilege escalation attacks, allowing local attackers to gain higher-level permissions.
What are the prerequisites for exploiting ZDI-26-408?
An attacker must first obtain the ability to execute low-privileged code on the target system to exploit ZDI-26-408.
Which software is affected by ZDI-26-408?
ZDI-26-408 affects installations of X.Org Server.