Back to Security Advisories
High 2026-08-06

LibXfont2 Security Update — AlmaLinux 9 (ALSA-2026:47084)

AlmaLinux 9

X.Org X11 libXfont2 runtime library Security Fix(es): * libXfont2: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow (CVE-2026-56001) * libXfont2: PCF Font Parsing Heap Buffer Overflow (CVE-2026-56002) For more details about the security issue(s), including the impact, a CVSS score, acknowledgment…

X.Org X11 libXfont2 runtime library

Security Fix(es):

* libXfont2: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow (CVE-2026-56001)
* libXfont2: PCF Font Parsing Heap Buffer Overflow (CVE-2026-56002)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgment…

Type:
security

Severity:
important

Release date:
2026-08-06

Description:
X.Org X11 libXfont2 runtime library

Security Fix(es):

* libXfont2: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow (CVE-2026-56001)
* libXfont2: PCF Font Parsing Heap Buffer Overflow (CVE-2026-56002)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Updated packages listed below:

Architecture Package Checksum
aarch64 libXfont2-2.0.3-12.el9_8.1.aarch64.rpm 5eb7e1efd9a3692616a2832f2a8f4b9d3d073a534033e7cfd9673b725ca63890
aarch64 libXfont2-devel-2.0.3-12.el9_8.1.aarch64.rpm cd65f0311d66af05d36bc6ddc76f078c9affafb0a0ad0c0f9188bc4be8d38fd8
i686 libXfont2-devel-2.0.3-12.el9_8.1.i686.rpm 30222a6ca3ff30d91dfb8d76857e72d7ed1d04a253def9a477fbd9a79311c16d
i686 libXfont2-2.0.3-12.el9_8.1.i686.rpm 8687e060e36d1de17ab13f49dd439fc86b7326a7d26d51b74188feb904aaaadb
ppc64le libXfont2-devel-2.0.3-12.el9_8.1.ppc64le.rpm 4f3daa9fabc1fd59ad37223236f58bc023bb318157cd8fddbeb81160635936ee
ppc64le libXfont2-2.0.3-12.el9_8.1.ppc64le.rpm 9dae67be0608a03541a28c6ecaf290c59a6cc5113209d7c344172670e5bf2ea1
s390x libXfont2-devel-2.0.3-12.el9_8.1.s390x.rpm 55cb471da1ea0ac73764cc8a1c7644f7e95c2f15b3cdff60562367da2ea6f065
s390x libXfont2-2.0.3-12.el9_8.1.s390x.rpm ec2073121be56c19ce0d486ea8fbf4735f0b8b722df7b40ae3eadb061e1a0a2b
x86_64 libXfont2-devel-2.0.3-12.el9_8.1.x86_64.rpm 73e69bbbe37f6a28c8de80469b1a38fc080fd3cbc22214edda176fbf29bb7b7d
x86_64 libXfont2-2.0.3-12.el9_8.1.x86_64.rpm de6da4108847c479482857258cf2c7949a52c391b41b7063246f69e43df46451

Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.

How to Apply the Fix

Update the affected packages on your server to the patched release, then restart the relevant services.

sudo dnf update
More Information

Check your system for vulnerabilities

Select your product and operating system to see the exact fix commands that apply to you.

Check Your System