Description

A flaw was found in the X.Org X server. This out-of-bounds read vulnerability in the XKB geometry processing, specifically within the `CheckSetGeom()` and `XkbAddGeomKeyAlias` functions, allows an attacker to read uninitialized or out-of-bounds memory. An attacker with a connection to the X11 server, either locally or remotely, can exploit this without user interaction. This could lead to the disclosure of memory contents or cause a denial of service by crashing the server.

INFO

Published Date :

2026-05-05T14:41:05.468Z

Last Modified :

2026-05-05T18:52:32.853Z

Source :

redhat
AFFECTED PRODUCTS

The following products are affected by CVE-2026-34000 vulnerability.

Vendors Products
Redhat
  • Enterprise Linux
X.org
  • Xorg-server

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact