Description
A use-after-free flaw was found in the X.Org X server and Xwayland in CreateSaverWindow(). A client can trigger a use-after-free read after changing window attributes and forcing the screen saver, leading to information disclosure.
Published: 2026-06-05
Score: 5.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A use‑after‑free vulnerability exists in X.Org X server and Xwayland within the CreateSaverWindow() function. The flaw allows a client that can manipulate window attributes and force a screen saver to read memory after the object has already been freed. This results in disclosed data from the X server’s address space, a classic use‑after‑free (CWE‑416) that can reveal confidential information that the client cannot normally access.

Affected Systems

The affected products are X.Org X server and Xwayland on Red Hat Enterprise Linux 6, 7, 8, 9 and 10. No specific version numbers are listed in the advisory; any installation of these packages on the mentioned RHEL releases is potentially vulnerable.

Risk and Exploitability

The CVSS score of 5.5 indicates a moderate severity, and the vulnerability is not listed in the CISA Known Exploited Vulnerabilities catalog. Exploitation requires a client that can connect to the X server, change window attributes, and force a screen saver. The lack of an EPSS score provides no current estimate of exploitation likelihood, but the described workflow makes the vulnerability usable for information disclosure by an attacker with X client access.

Generated by OpenCVE AI on June 5, 2026 at 12:21 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Install the Red Hat security update that patches X.Org X server and Xwayland for CVE‑2026‑50263, ensuring the underlying packages are upgraded to a fixed version.
  • After applying the update, restart the X server or reboot the system so that the patched binaries are loaded.
  • If possible, limit X client connections to trusted local users and disable remote X forwarding while the vulnerability remains active.

Generated by OpenCVE AI on June 5, 2026 at 12:21 UTC.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Debian DSA Debian DSA DSA-6370-1 xorg-server security update
References
Link Providers
https://access.redhat.com/errata/RHSA-2026:26562 cve-icon
https://access.redhat.com/errata/RHSA-2026:26566 cve-icon
https://access.redhat.com/errata/RHSA-2026:26590 cve-icon
https://access.redhat.com/errata/RHSA-2026:26610 cve-icon
https://access.redhat.com/errata/RHSA-2026:26709 cve-icon
https://access.redhat.com/errata/RHSA-2026:28923 cve-icon
https://access.redhat.com/errata/RHSA-2026:29844 cve-icon
https://access.redhat.com/errata/RHSA-2026:36083 cve-icon
https://access.redhat.com/errata/RHSA-2026:36085 cve-icon
https://access.redhat.com/errata/RHSA-2026:36086 cve-icon
https://access.redhat.com/errata/RHSA-2026:36087 cve-icon
https://access.redhat.com/errata/RHSA-2026:36632 cve-icon
https://access.redhat.com/errata/RHSA-2026:36633 cve-icon
https://access.redhat.com/errata/RHSA-2026:36634 cve-icon
https://access.redhat.com/errata/RHSA-2026:36768 cve-icon
https://access.redhat.com/errata/RHSA-2026:36791 cve-icon
https://access.redhat.com/errata/RHSA-2026:36792 cve-icon
https://access.redhat.com/errata/RHSA-2026:36798 cve-icon
https://access.redhat.com/errata/RHSA-2026:38502 cve-icon
https://access.redhat.com/errata/RHSA-2026:38810 cve-icon
https://access.redhat.com/errata/RHSA-2026:46377 cve-icon
https://access.redhat.com/errata/RHSA-2026:46382 cve-icon
https://access.redhat.com/errata/RHSA-2026:46385 cve-icon
https://access.redhat.com/errata/RHSA-2026:46392 cve-icon
https://access.redhat.com/errata/RHSA-2026:46456 cve-icon
https://access.redhat.com/errata/RHSA-2026:46460 cve-icon
https://access.redhat.com/errata/RHSA-2026:46473 cve-icon
https://access.redhat.com/errata/RHSA-2026:49519 cve-icon
https://access.redhat.com/security/cve/CVE-2026-50263 cve-icon cve-icon
https://bugzilla.redhat.com/show_bug.cgi?id=2485388 cve-icon cve-icon
https://gitlab.freedesktop.org/xorg/xserver/-/commit/ecc634f1b2f7aa473d3a267eada98c4918bf9e05 cve-icon cve-icon cve-icon
https://lists.x.org/archives/xorg-announce/2026-June/003702.html cve-icon cve-icon cve-icon
https://nvd.nist.gov/vuln/detail/CVE-2026-50263 cve-icon
https://redhat.atlassian.net/browse/PSIRTSUPT-16950 cve-icon cve-icon cve-icon
https://www.cve.org/CVERecord?id=CVE-2026-50263 cve-icon
History

Tue, 04 Aug 2026 23:45:00 +0000

Type Values Removed Values Added
CPEs cpe:/o:redhat:rhel_els:6
References

Mon, 27 Jul 2026 10:15:00 +0000


Mon, 27 Jul 2026 07:45:00 +0000

Type Values Removed Values Added
References

Mon, 27 Jul 2026 06:30:00 +0000

Type Values Removed Values Added
References

Mon, 27 Jul 2026 04:00:00 +0000


Mon, 13 Jul 2026 12:00:00 +0000

Type Values Removed Values Added
References

Mon, 13 Jul 2026 05:30:00 +0000

Type Values Removed Values Added
References

Wed, 08 Jul 2026 19:45:00 +0000

Type Values Removed Values Added
First Time appeared Redhat enterprise Linux Eus
Redhat rhel Tus
CPEs cpe:/a:redhat:rhel_e4s:8.8::appstream
cpe:/a:redhat:rhel_tus:8.8::appstream
cpe:/o:redhat:enterprise_linux_eus:10.0
Vendors & Products Redhat enterprise Linux Eus
Redhat rhel Tus
References

Wed, 08 Jul 2026 17:00:00 +0000

Type Values Removed Values Added
CPEs cpe:/a:redhat:rhel_aus:8.4::appstream
cpe:/a:redhat:rhel_eus_long_life:8.4::appstream
References

Wed, 08 Jul 2026 16:30:00 +0000

Type Values Removed Values Added
First Time appeared Redhat rhel Aus
Redhat rhel Eus Long Life
CPEs cpe:/a:redhat:rhel_aus:8.6::appstream
cpe:/a:redhat:rhel_eus_long_life:8.6::appstream
Vendors & Products Redhat rhel Aus
Redhat rhel Eus Long Life
References

Wed, 08 Jul 2026 10:00:00 +0000


Tue, 07 Jul 2026 12:15:00 +0000

Type Values Removed Values Added
First Time appeared Redhat rhel Els
Redhat rhel Eus
CPEs cpe:/a:redhat:rhel_e4s:9.4::appstream
cpe:/a:redhat:rhel_eus:9.6::appstream
cpe:/a:redhat:rhel_eus:9.6::crb
cpe:/o:redhat:rhel_els:7
Vendors & Products Redhat rhel Els
Redhat rhel Eus
References

Tue, 07 Jul 2026 07:30:00 +0000

Type Values Removed Values Added
First Time appeared Redhat rhel E4s
CPEs cpe:/a:redhat:rhel_e4s:9.2::appstream
Vendors & Products Redhat rhel E4s
References

Thu, 25 Jun 2026 14:00:00 +0000

Type Values Removed Values Added
CPEs cpe:/o:redhat:enterprise_linux:9
References

Wed, 24 Jun 2026 11:15:00 +0000

Type Values Removed Values Added
CPEs cpe:/o:redhat:enterprise_linux:8
References

Mon, 22 Jun 2026 08:00:00 +0000

Type Values Removed Values Added
CPEs cpe:/o:redhat:enterprise_linux:10 cpe:/o:redhat:enterprise_linux:10.2
References

Thu, 18 Jun 2026 04:45:00 +0000

Type Values Removed Values Added
CPEs cpe:/a:redhat:enterprise_linux:8::crb
cpe:/a:redhat:enterprise_linux:9::appstream
cpe:/a:redhat:enterprise_linux:9::crb
References

Wed, 17 Jun 2026 12:45:00 +0000

Type Values Removed Values Added
CPEs cpe:/a:redhat:enterprise_linux:8::appstream
References

Thu, 11 Jun 2026 20:00:00 +0000

Type Values Removed Values Added
First Time appeared X.org
X.org x Server
X.org xwayland
CPEs cpe:2.3:a:x.org:x_server:*:*:*:*:*:*:*:*
cpe:2.3:a:x.org:xwayland:*:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*
Vendors & Products X.org
X.org x Server
X.org xwayland

Mon, 08 Jun 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 05 Jun 2026 12:15:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

threat_severity

Moderate


Fri, 05 Jun 2026 11:45:00 +0000

Type Values Removed Values Added
Description A use-after-free flaw was found in the X.Org X server and Xwayland in CreateSaverWindow(). A client can trigger a use-after-free read after changing window attributes and forcing the screen saver, leading to information disclosure.
Title Xorg-x11-server: xorg-x11-server-xwayland: xorg-x11-server: use-after-free information disclosure in createsaverwindow()
First Time appeared Redhat
Redhat enterprise Linux
Weaknesses CWE-416
CPEs cpe:/o:redhat:enterprise_linux:10
cpe:/o:redhat:enterprise_linux:6
cpe:/o:redhat:enterprise_linux:7
cpe:/o:redhat:enterprise_linux:8
cpe:/o:redhat:enterprise_linux:9
Vendors & Products Redhat
Redhat enterprise Linux
References
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'}


Subscriptions

Redhat Enterprise Linux Enterprise Linux Eus Rhel Aus Rhel E4s Rhel Els Rhel Eus Rhel Eus Long Life Rhel Tus
X.org X Server Xwayland
cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2026-08-04T23:22:47.138Z

Reserved: 2026-06-04T14:55:24.012Z

Link: CVE-2026-50263

cve-icon Vulnrichment

Updated: 2026-06-08T16:01:24.631Z

cve-icon NVD

Status : Analyzed

Published: 2026-06-05T12:16:39.927

Modified: 2026-06-11T19:46:41.940

Link: CVE-2026-50263

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-06-02T00:00:00Z

Links: CVE-2026-50263 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-06-07T11:17:03Z

Weaknesses