CVE-2026-34000 Details
Description
A flaw was found in the X.Org X server. This out-of-bounds read vulnerability in the XKB geometry processing, specifically within the `CheckSetGeom()` and `XkbAddGeomKeyAlias` functions, allows an attacker to read uninitialized or out-of-bounds memory. An attacker with a connection to the X11 server, either locally or remotely, can exploit this without user interaction. This could lead to the disclosure of memory contents or cause a denial of service by crashing the server.
An out-of-bounds read vulnerability has been identified in the X.Org X server, specifically within the XKB geometry processing. The issue arises in the 'CheckSetGeom()' and 'XkbAddGeomKeyAlias' functions, where improper bounds checking allows an attacker to read uninitialized or out-of-bounds memory. This vulnerability can be exploited by an attacker with a connection to the X11 server, either locally or remotely, without user interaction. The exploitation could lead to the disclosure of sensitive memory contents or cause a denial-of-service by crashing the server.
To mitigate this vulnerability, restrict access to the X11 server. On systems where a graphical environment is not needed, consider disabling the X server by setting the default system target to multi-user mode. For systems that require the X server, ensure X11 forwarding is disabled in SSH configurations unless explicitly needed, and restrict direct X11 connections to trusted users and networks using firewall rules. If changes are made to the SSH configuration, the 'sshd' service must be restarted. A system reboot is required if the default system target is changed.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed May 5, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-125 | Out-of-bounds Read | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| x.org x server | All versions |
CPE
Remediation
| |
| redhat enterprise linux | 6.0 7.0 8.0 9.0 10.0 |
CPE
Remediation
| |
Change History
19 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 8, 2026 | CVE Modified | [email protected] |
| Jun 5, 2026 | CVE Modified | [email protected] |
| Jun 4, 2026 | CVE Modified | [email protected] |
| Jun 4, 2026 | CVE Modified | [email protected] |
| Jun 2, 2026 | CVE Modified | [email protected] |
| Jun 2, 2026 | CVE Modified | [email protected] |
| May 28, 2026 | CVE Modified | [email protected] |
| May 28, 2026 | CVE Modified | [email protected] |
| May 28, 2026 | CVE Modified | [email protected] |
| May 26, 2026 | CVE Modified | [email protected] |
| May 26, 2026 | CVE Modified | [email protected] |
| May 26, 2026 | CVE Modified | [email protected] |
| May 26, 2026 | CVE Modified | [email protected] |
| May 26, 2026 | CVE Modified | [email protected] |
| May 20, 2026 | CVE Modified | [email protected] |
| May 7, 2026 | Initial Analysis | [email protected] |
| May 5, 2026 | New CVE Received | [email protected] |