CVE-2026-50264

An out-of-bounds write flaw was found in the X.Org X server and Xwayland in DRIGetBuffers/DRIGetBuffersWithFormat. A client that requests multiple DRI2BufferBackLeft attachments and one DRI2BufferFrontLeft can trigger an out-of-bounds heap write. This may be used to crash the server, or for privilege escalation if the X server runs as root.
Configurations

No configuration.

History

05 Jun 2026, 12:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-05 12:16

Updated : 2026-06-05 13:27


NVD link : CVE-2026-50264

Mitre link : CVE-2026-50264

CVE.ORG link : CVE-2026-50264


JSON object : View

Products Affected

No product.

CWE
CWE-787

Out-of-bounds Write