CVE-2026-88807

Summary

A heap overflow in libXrender before 0.9.13 in RenderQueryPictFormats could be used by malicious X servers to inject code into attached X clients.

Affected Software

VendorProductVersion RangeStatus
X.orglibXrender0 < 0.9.13affected

Weaknesses

  • CWE-122: CWE-122 Heap-based buffer overflow

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References