Back to Security Advisories
High 2026-07-29

LibXfont2 Security Update — AlmaLinux 8 (ALSA-2026:47103)

AlmaLinux 8

X.Org X11 libXfont2 runtime library Security Fix(es): * libXfont2: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow (CVE-2026-56001) * libXfont2: PCF Font Parsing Heap Buffer Overflow (CVE-2026-56002) * libXfont2: computeProps Property Buffer Heap Buffer Overflow (CVE-2026-56003) For more detai…

X.Org X11 libXfont2 runtime library

Security Fix(es):

* libXfont2: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow (CVE-2026-56001)
* libXfont2: PCF Font Parsing Heap Buffer Overflow (CVE-2026-56002)
* libXfont2: computeProps Property Buffer Heap Buffer Overflow (CVE-2026-56003)

For more detai…

Type:
security

Severity:
important

Release date:
2026-07-29

Description:
X.Org X11 libXfont2 runtime library

Security Fix(es):

* libXfont2: BitmapScaleBitmaps Integer Overflow Heap Buffer Overflow (CVE-2026-56001)
* libXfont2: PCF Font Parsing Heap Buffer Overflow (CVE-2026-56002)
* libXfont2: computeProps Property Buffer Heap Buffer Overflow (CVE-2026-56003)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Updated packages listed below:

Architecture Package Checksum
aarch64 libXfont2-devel-2.0.3-2.el8_10.1.aarch64.rpm 19ad5274f573ddc922da4d362aa92bae98783b3c23650c2dc58cdc0fd1289f9b
aarch64 libXfont2-2.0.3-2.el8_10.1.aarch64.rpm ebbb5e271b6f68b0c36dba51403e165770928d8af2489e29871ea5742e700c25
i686 libXfont2-devel-2.0.3-2.el8_10.1.i686.rpm 750548d0139da50473002dad2cbf178e6501b0de5434c726ce5270f3d2fdb7bf
i686 libXfont2-2.0.3-2.el8_10.1.i686.rpm 7d80785bca268953ac0834cb43c42439d0910417be7a817dbd14f542b0b28b5d
ppc64le libXfont2-2.0.3-2.el8_10.1.ppc64le.rpm 02fed2d70d3d6f7029f65463eafb87d02078d7148232ed3b0ca7c5095707b909
ppc64le libXfont2-devel-2.0.3-2.el8_10.1.ppc64le.rpm 4700e8afb839bd093c17812eadb5dabbc04457feca93f9e2f8f8ca08db1ac5c1
s390x libXfont2-devel-2.0.3-2.el8_10.1.s390x.rpm 28d8163499319e7a94ed3cda786795c0efae2ac4144b934b81e0641d1258627b
s390x libXfont2-2.0.3-2.el8_10.1.s390x.rpm 539605aff343a5a3940c9b09613a8d17e447946a5069890bb41303867bb4379b
x86_64 libXfont2-2.0.3-2.el8_10.1.x86_64.rpm 3beaa2459a1bdef99f89287ad5fc2d81a8f2b053ae786ad7661ab004ecb39d7f
x86_64 libXfont2-devel-2.0.3-2.el8_10.1.x86_64.rpm ad93217752190fc89d42baaa91066c59043a1350adac7786cf6aa093f376000c

Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.

How to Apply the Fix

Update the affected packages on your server to the patched release, then restart the relevant services.

sudo dnf update
More Information

Check your system for vulnerabilities

Wählen Sie Ihr Produkt und Betriebssystem, um die passenden Fix-Befehle zu sehen.

Check Your System