Përditësimi i X.Org Server 21.1.24, xwayland 24.1.13 dhe libXfont2 2.0.8 me rregullimin e dobësive

Janë publikuar përditësimet korrigjuese të X.Org Server 21.1.24 dhe komponentit DDX (Device-Dependent X) xwayland 24.1.13, i cili mundëson ekzekutimin e X.Org Server për realizimin e aplikacioneve X11 në mjedise të bazuara në Wayland. Në versionet e reja janë eliminuar 2 vulnerabilitete, të cilat potencialisht mund të shkaktojnë rritje privilegjesh në sisteme ku X-serveri ekzekutohet me të drejtat e root, si dhe për ekzekutimin e kodit në distancë në konfiguracyone ku aksesimi bëhet përmes ridrejtimit të seancës X11 me SSH.

Vulnerabilitetet e korrigjuara:

  • CVE-2026-55999 — buffer overflow in the implementation of 2D acceleration architecture Glamor, affecting the function glamor_font_get(), which constructs the font texture atlas by rendering each glyph in a shared buffer. The issue arises because the buffer size was determined based on the parameters set in the font, while the data copied to the buffer used the individual metrics of each glyph. To exploit the vulnerability, an attacker can prepare a specially crafted file in PCF format, which specifies incorrect glyph metrics that exceed the allocated memory size for them. The overflow occurs on systems using the glamor backend (Xorg with the modesetting driver and Xwayland) when rendering text with the problematic font.
  • CVE-2026-56000 — use-after-free in the CommonMakeCurrent() function when handling GLX contextTags. The issue is caused by the fact that when using the realloc() function, the data in the cl->contextTags array was moved to a new buffer, but a pointer referring to the old buffer remained in circulation. To initiate the buffer movement, a client could occupy all the elements of the array allocated for the GLX context, and then create another additional context.

Shtesë, mund të theksohet lirimi i bibliotekës libXfont 2.0.8, e cila përdoret në X-server. Në përditësim janë eliminuar 3 vulnerabilitete (CVE-2026-56001, CVE-2026-56002, CVE-2026-56003), që çojnë në mbushjen e buffers gjatë analizës së fonteve të formatuara posaçërisht në formatin PCF.

Burimi: opennet.ru

Blini hosting tĂ« besueshĂ«m pĂ«r faqe interneti me mbrojtje nga DDoS, serverĂ« VPS VDS đŸ”„ Blini hosting tĂ« besueshĂ«m pĂ«r faqe interneti me mbrojtje nga DDoS, serverĂ« VPS VDS | ProHoster