Skip to content
Critical Vulnerabilities in xorg-server Affecting Slackware and SUSE Systems

Critical Vulnerabilities in xorg-server Affecting Slackware and SUSE Systems

First seen 9 Jul 2026, 10:55 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •July 10, 2026 at 00:58 UTC
  • •CVE-2026-55999 and CVE-2026-56000 patched in xorg-server for Slackware and SUSE.
  • •Heap buffer overflow and use-after-free vulnerabilities can be exploited by malicious files or clients.
  • •Immediate patching is recommended to protect affected systems from potential attacks.

Recent updates have addressed critical vulnerabilities in xorg-server affecting Slackware and SUSE systems. The vulnerabilities include CVE-2026-55999, a heap buffer overflow due to a missing bounds check in `glamor_font_get`, and CVE-2026-56000, a use-after-free issue in `CommonMakeCurrent`. These vulnerabilities can be exploited by processing malicious PCF files or through interactions with malicious clients creating GLX contexts. The flaws were confirmed and patched on July 8, 2026, with significant implications for users of Slackware 15.0 and SUSE Linux Enterprise Server. Users are advised to apply the patches immediately to mitigate potential exploitation risks. The vulnerabilities are rated as important, indicating a serious risk to system integrity and security.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 90d ago How this analysis works

Timeline

2026-07-08
CVE-2026-55999 published
A heap buffer overflow vulnerability in `glamor_font_get` was disclosed and patched.
Linuxsecurity
2026-07-08
CVE-2026-56000 published
A use-after-free vulnerability in `CommonMakeCurrent` was disclosed and patched.
Linuxsecurity
2026-07-08
Slackware xorg-server update released
Slackware released patches for xorg-server addressing critical vulnerabilities.
Linuxsecurity
2026-07-08
SUSE xorg-x11-server updates released
Multiple SUSE updates were issued to fix vulnerabilities in xorg-x11-server.
Linuxsecurity

More articles in this cluster (6)

Following this threat?

Track SuSE and CVE-2026-55999 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed