logo

Critical RCE Vulnerabilities in Fedora libXfont2 Affecting Multiple CVEs

ID: 9a5b4271-7ec6-5e1d-a4b3-4007b41fb847

STIX ID: report--9a5b4271-7ec6-5e1d-a4b3-4007b41fb847

Feed Name: ThreatCluster

Threat Score
75/100

Date Published: 2026-07-12

Date Updated: 2026-07-18

...
...

On July 8, 2026 three critical remote code execution vulnerabilities (CVE-2026-56001, CVE-2026-56002, CVE-2026-56003) were disclosed in the libXfont2 library affecting Fedora 43 and 44; the maintainer confirmed the issues and users are advised to upgrade to libXfont2 v2.0.8 (installable via dnf) to mitigate the risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.