Description
An out-of-bounds read in libX11's byte-oriented codeset parser in libX11 before 1.8.14 could be used by malicious X servers to crash attached X clients.
Published: 2026-09-28
Score: 5.1 Medium
EPSS: n/a
KEV: No
Impact: Denial of Service
Action: Apply Patch
AI Analysis

Impact

An out-of-bounds read occurs in libX11's byte‑oriented codeset parser when the library is older than 1.8.14. The flaw is a buffer overread, classified as CWE‑125, and can be triggered by a malicious X server to crash attached X clients. The primary consequence is a client‑side denial of service, disrupting graphical applications without leaking data or escalating privileges.

Affected Systems

The vulnerability affects the x.org libX11 library from any vendor providing the open‑source X.Org implementation. All installations of libX11 before version 1.8.14 are susceptible; newer releases (1.8.14 and later) contain the fix.

Risk and Exploitability

The CVSS base score of 5.1 indicates moderate severity. The EPSS score is not available, but the weakness can be abused by devices that can act as an X server to attached clients, meaning it requires the attacker to run a malicious server on the network where the client will connect. Because it is a client‑side crash and not a remote code execution, the risk is primarily operational. It is not listed in the CISA KEV catalog, suggesting no known widespread exploitation yet, but the potential for disruption in multi‑user X environments remains.

Generated by OpenCVE AI on September 28, 2026 at 10:24 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the libX11 library to version 1.8.14 or later
  • Verify that all X clients are rebuilding or linking against the updated library
  • Configure the X server to accept connections only from trusted hosts or use xhost restrictions to prevent unauthorized clients from attaching to the display

Generated by OpenCVE AI on September 28, 2026 at 10:24 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 28 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

threat_severity

Moderate


Mon, 28 Sep 2026 09:00:00 +0000

Type Values Removed Values Added
Description An out-of-bounds read in libX11's byte-oriented codeset parser in libX11 before 1.8.14 could be used by malicious X servers to crash attached X clients.
Title Out-of-bounds read in libX11's byte-oriented codeset parser
First Time appeared X.org
X.org libx11
Weaknesses CWE-125
CPEs cpe:2.3:a:x.org:libx11:*:*:*:*:*:*:*:*
Vendors & Products X.org
X.org libx11
References
Metrics cvssV3_1

{'score': 5.1, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: suse

Published:

Updated: 2026-09-28T08:45:47.752Z

Reserved: 2026-09-21T09:33:25.369Z

Link: CVE-2026-94285

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-28T09:17:08.353

Modified: 2026-09-28T09:17:08.353

Link: CVE-2026-94285

cve-icon Redhat

Severity : Moderate

Publid Date: 2026-09-28T08:45:47Z

Links: CVE-2026-94285 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-09-28T10:30:15Z

Weaknesses