Description
A flaw was found in xorg-x11-server. The GLX (OpenGL Extension to the X Window System) interface fails to verify that incoming data sizes do not exceed allocated buffer limits when handling large rendering requests. An authenticated local client can exploit this vulnerability by sending a specially crafted request, triggering a heap-based buffer overflow. Successful exploitation can result in arbitrary code execution with the privileges of the X server or cause a Denial of Service (DoS) by crashing the application.
Published: n/a
Score: 7.8 High
EPSS: n/a
KEV: No
Impact: Local Privilege Escalation
Action: Immediate Patch
AI Analysis

Impact

The vulnerability exists in the GLX component of the X.Org X11 server, where the interface does not verify that incoming data sizes remain within allocated buffer limits during large rendering requests. This oversight allows a local authenticated client to send a crafted request, triggering a heap‑based overflow that can lead to arbitrary code execution with the privileges of the X server. If exploitation fails to achieve code execution, the overflow can still corrupt memory and cause the server to crash, resulting in a denial of service.

Affected Systems

The affected product is xorg‑x11‑server (X.Org). Specific versions impacted are not listed in the advisory; check the vendor’s security notices for patched releases and upgrade accordingly.

Risk and Exploitability

The CVSS score of 7.8 indicates moderate to high severity. The EPSS score is not available, so exploitation probability cannot be quantified at present, and the vulnerability is not listed in CISA KEV. The flaw is exploitable only by an authenticated local user. Based on the description, the likely attack vector is a local authenticated client that has permission to access the X server, which could be a legitimate user running graphical applications. Because the vulnerability requires local access, the risk is limited to machines with compromised or malicious local accounts.

Generated by OpenCVE AI on October 8, 2026 at 14:08 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the latest vendor patch for xorg‑x11‑server when it becomes available.
  • Limit the X server to trusted clients by configuring Xauthority or using xhost to deny unauthorized connections.
  • Run user applications that rely on GLX under the principle of least privilege, disabling GLX if not required.

Generated by OpenCVE AI on October 8, 2026 at 14:08 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 08 Oct 2026 12:15:00 +0000

Type Values Removed Values Added
Description A flaw was found in xorg-x11-server. The GLX (OpenGL Extension to the X Window System) interface fails to verify that incoming data sizes do not exceed allocated buffer limits when handling large rendering requests. An authenticated local client can exploit this vulnerability by sending a specially crafted request, triggering a heap-based buffer overflow. Successful exploitation can result in arbitrary code execution with the privileges of the X server or cause a Denial of Service (DoS) by crashing the application.
Title xorg-x11-server: GLX sanitization flaw
Weaknesses CWE-120
References
Metrics threat_severity

None

cvssV3_1

{'score': 7.8, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

threat_severity

Moderate


Subscriptions

No data.

cve-icon MITRE

No data.

cve-icon Vulnrichment

No data.

cve-icon NVD

No data.

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-10-07T12:00:00Z

Links: CVE-2026-93517 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-10-08T14:15:15Z

Weaknesses
  • CWE-120

    Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')