RHSA-2026:21712HighCVSS 7.8
Red Hat Security Advisory: xorg-x11-server-Xwayland security update
🔗 CVE IDs covered (5)
📋 Description
CVE-2026-33999 — xorg: xwayland: X.Org X server: Denial of Service via integer underflow in XKB compatibility map handling CVE-2026-34000 — xwayland: xorg: X.Org X server: Information disclosure and denial of service via out-of-bounds read in XKB geometry processing. CVE-2026-34001 — xorg: xwayland: X.Org X server: Use-after-free vulnerability leads to server crash and potential memory corruption CVE-2026-34002 — xorg: xwayland: X.Org X server: Information disclosure or Denial of Service via out-of-bounds read in XKB modifier map handling CVE-2026-34003 — xorg: xwayland: X.Org X server: Information exposure and denial of service via out-of-bounds memory access
🔗 References (8)
- selfhttps://access.redhat.com/errata/RHSA-2026:21712
- externalhttps://access.redhat.com/security/updates/classification/#important
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2451106
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2451107
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2451109
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2451112
- externalhttps://bugzilla.redhat.com/show_bug.cgi?id=2451113
- selfhttps://security.access.redhat.com/data/csaf/v2/advisories/2026/rhsa-2026_21712.json