ZDI-CAN-30559: ZDI-26-407: X.Org Server PCF Font Parsing Heap-based Buffer Overflow Privilege Escalation Vulnerability
This vulnerability allows local attackers to escalate privileges on affected installations of X.Org Server. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2026-56002.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-30559?
The severity of ZDI-CAN-30559 is rated with a CVSS score of 7.8.
How do I fix ZDI-CAN-30559?
To fix ZDI-CAN-30559, ensure you update your X.Org Server to the latest patched version.
What type of vulnerability is ZDI-CAN-30559?
ZDI-CAN-30559 is a heap-based buffer overflow vulnerability that can lead to privilege escalation.
Who can exploit ZDI-CAN-30559?
Local attackers with the ability to execute low-privileged code on the target system can exploit ZDI-CAN-30559.
What software is affected by ZDI-CAN-30559?
ZDI-CAN-30559 affects installations of the X.Org Server.