Description
An out-of-bounds read in libX11's byte-oriented codeset parser in libX11 before 1.8.14 could be used by malicious X servers to crash attached X clients.
Published: 2026-09-28
Score: 5.1 Medium
EPSS: n/a
KEV: No
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 28 Sep 2026 09:00:00 +0000

Type Values Removed Values Added
Description An out-of-bounds read in libX11's byte-oriented codeset parser in libX11 before 1.8.14 could be used by malicious X servers to crash attached X clients.
Title Out-of-bounds read in libX11's byte-oriented codeset parser
First Time appeared X.org
X.org libx11
Weaknesses CWE-125
CPEs cpe:2.3:a:x.org:libx11:*:*:*:*:*:*:*:*
Vendors & Products X.org
X.org libx11
References
Metrics cvssV3_1

{'score': 5.1, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: suse

Published:

Updated: 2026-09-28T08:45:47.752Z

Reserved: 2026-09-21T09:33:25.369Z

Link: CVE-2026-94285

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-28T09:17:08.353

Modified: 2026-09-28T09:17:08.353

Link: CVE-2026-94285

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses