[NEU] [mittel] X.Org X11: Mehrere Schwachstellen ermöglichen Privilegieneskalation und Denial of Service
Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in X.Org X11 ausnutzen, um seine Privilegien zu erhöhen, und um einen Denial of Service Angriff durchzuführen.
Details
Original advisory: https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2026-2658
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-44950 | coverage & exploitation status | NVD · CVE.org |
| CVE-2026-59679 | coverage & exploitation status | NVD · CVE.org |
Recent advisories for X.Org X11
A cluster of recent advisories against the same product widens the attack surface — attackers routinely chain freshly published CVEs on one product, so review these together.
- high[NEW] [high] X.Org X11 and Xwayland: Multiple vulnerabilities allow code execution and DoScert-bund · 2026-08-05
- medium[NEW] [medium] X.Org X11 Server (libXfont2): Multiple vulnerabilities allow execution of arbitrary code with a…cert-bund · 2026-08-04
- medium[UPDATE] [medium] X.Org X11: Multiple vulnerabilities allow unspecified effects, possibly code executioncert-bund · 2026-07-28
- medium[UPDATE] [medium] X.Org X11 and Xwayland: Multiple vulnerabilitiescert-bund · 2026-07-27
- medium[UPDATE] [medium] X.Org X11, Xwayland: Multiple vulnerabilitiescert-bund · 2026-07-21
- high[UPDATE] [high] Xwayland and X.Org X11: Multiple vulnerabilities allow unspecified attackcert-bund · 2026-07-13
More from CERT-Bund (BSI) Security Advisories
- medium[NEU] [mittel] Linux Kernel: Mehrere Schwachstellen2026-08-05
- medium[NEU] [mittel] Red Hat Ansible Automation Platform (ansible-core): Schwachstelle ermöglicht Codeausführung2026-08-05
- high[NEU] [hoch] Veeam ONE: Mehrere Schwachstellen2026-08-05
- medium[NEU] [mittel] Mozilla Firefox für Android: Schwachstelle ermöglicht Offenlegung von Informationen2026-08-05
- medium[NEU] [UNGEPATCHT] [mittel] vim (vms_fixfilename): Mehrere Schwachstellen ermöglichen Denial of Service2026-08-05