X.Org X11 libXfont2 runtime library
Go to file
RHEL Packaging Agent 651c992437 Fix CVE-2026-59679: validate num_chars in fs_read_glyphs
Backport upstream commit 668fea81 to fix CVE-2026-59679, an
out-of-bounds read/write vulnerability in fs_read_glyphs().
The fix validates that num_chars from the FS_QueryXBitmaps16
reply does not exceed the encoding array size allocated during
FS_QueryXExtents16 handling, preventing exploitation by a
malicious font server. A regression test is included.

CVE: CVE-2026-59679
Upstream patches:
 - 668fea81f4.patch
Resolves: RHEL-221956

This commit was backported by Ymir, a Red Hat Enterprise Linux software maintenance AI agent.

Assisted-by: Ymir
2026-08-06 10:55:27 +00:00
.gitignore Import rpm: c8s 2023-02-27 13:53:57 -05:00
0001-bitscale-fix-integer-overflow-in-BitmapScaleBitmaps-.patch CVE fix for: 2026-07-08 15:55:17 +02:00
0002-pcfread-validate-bitmap-sizes-and-offsets-against-pe.patch CVE fix for: 2026-07-08 15:55:17 +02:00
0003-bitscale-add-bounds-check-to-computeProps-for-proper.patch CVE fix for: 2026-07-08 15:55:17 +02:00
0004-fserve-validate-num_chars-against-encoding-array-siz.patch Fix CVE-2026-59679: validate num_chars in fs_read_glyphs 2026-08-06 10:55:27 +00:00
gating.yaml Bring gating.yaml over from Brew dist-git 2023-03-10 10:59:26 -08:00
libXfont2-2.0.3-CVE-2026-44950.patch Fix CVE-2026-44950: heap buffer overflow in fs_read_glyphs() 2026-08-06 10:48:36 +00:00
libXfont2.spec Fix CVE-2026-59679: validate num_chars in fs_read_glyphs 2026-08-06 10:55:27 +00:00
sources Auto sync2gitlab import of libXfont2-2.0.3-2.el8.src.rpm 2022-05-26 10:10:13 -04:00