Answer in brief
CVE-2026-59679 records a Unknown severity vulnerability in fs_read_glyphs() heap OOB read/write via encoding array index mismatch in libXfont2. The current sources do not mark it as known exploited. The current feed maps SUSE/Container suse/kiosk/tigervnc-x11vnc:1.14-63.8 (generic), SUSE/Container suse/kiosk/xorg:21.1-83.7 (generic), SUSE/Image SLES12-SP5-Azure-SAP-BYOS (generic), SUSE/Image SLES12-SP5-Azure-SAP-On-Demand (generic) and additional mapped packages. Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps SUSE/Container suse/kiosk/tigervnc-x11vnc:1.14-63.8 (generic), SUSE/Container suse/kiosk/xorg:21.1-83.7 (generic), SUSE/Image SLES12-SP5-Azure-SAP-BYOS (generic), SUSE/Image SLES12-SP5-Azure-SAP-On-Demand (generic) and additional mapped packages. Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| SUSE/Container suse/kiosk/tigervnc-x11vnc:1.14-63.8generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Container suse/kiosk/xorg:21.1-83.7generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES12-SP5-Azure-SAP-BYOSgeneric | >=? <2.0.3-3.6.1 | 2.0.3-3.6.1 |
| SUSE/Image SLES12-SP5-Azure-SAP-On-Demandgeneric | >=? <2.0.3-3.6.1 | 2.0.3-3.6.1 |
| SUSE/Image SLES12-SP5-EC2-SAP-BYOSgeneric | >=? <2.0.3-3.6.1 | 2.0.3-3.6.1 |
| SUSE/Image SLES12-SP5-EC2-SAP-On-Demandgeneric | >=? <2.0.3-3.6.1 | 2.0.3-3.6.1 |
| SUSE/Image SLES12-SP5-GCE-SAP-BYOSgeneric | >=? <2.0.3-3.6.1 | 2.0.3-3.6.1 |
| SUSE/Image SLES12-SP5-GCE-SAP-On-Demandgeneric | >=? <2.0.3-3.6.1 | 2.0.3-3.6.1 |
| SUSE/Image SLES15-SP6-SAPgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-Azuregeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-Azure-3Pgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-BYOSgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-BYOS-Azuregeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-BYOS-EC2generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-BYOS-GCEgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAPCALgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAPCAL-Azuregeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAPCAL-EC2generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAPCAL-GCEgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-EC2generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-GCEgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-Hardenedgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-Hardened-Azuregeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-Hardened-BYOSgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-Hardened-BYOS-Azuregeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-Hardened-BYOS-EC2generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-Hardened-BYOS-GCEgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-Hardened-EC2generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP6-SAP-Hardened-GCEgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAP-Azuregeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAP-Azure-3Pgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAP-BYOS-Azuregeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAP-BYOS-EC2generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAP-BYOS-GCEgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAPCAL-Azuregeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAPCAL-EC2generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAPCAL-GCEgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAP-EC2generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAP-GCEgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAP-GCE-3Pgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAP-Hardened-Azuregeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAP-Hardened-BYOS-Azuregeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAP-Hardened-BYOS-EC2generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAP-Hardened-BYOS-GCEgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES15-SP7-SAP-Hardened-GCEgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/Image SLES-SAP-Azuregeneric | >=? <2.0.7-160000.5.1 | 2.0.7-160000.5.1 |
| SUSE/Image SLES-SAP-Azure-3Pgeneric | >=? <2.0.7-160000.5.1 | 2.0.7-160000.5.1 |
| SUSE/Image SLES-SAP-BYOS-Azuregeneric | >=? <2.0.7-160000.5.1 | 2.0.7-160000.5.1 |
| SUSE/Image SLES-SAP-BYOS-EC2generic | >=? <2.0.7-160000.5.1 | 2.0.7-160000.5.1 |
| SUSE/Image SLES-SAP-BYOS-GCEgeneric | >=? <2.0.7-160000.5.1 | 2.0.7-160000.5.1 |
| SUSE/Image SLES-SAPCAL-GCEgeneric | >=? <2.0.7-160000.5.1 | 2.0.7-160000.5.1 |
| SUSE/Image SLES-SAP-GCEgeneric | >=? <2.0.7-160000.5.1 | 2.0.7-160000.5.1 |
| SUSE/Image SLES-SAP-GCE-3Pgeneric | >=? <2.0.7-160000.5.1 | 2.0.7-160000.5.1 |
| libXfont2/libXfont2generic | ? | Not reported |
| SUSE/openSUSE Leap 16.0generic | >=? <2.0.7-160000.5.1 | 2.0.7-160000.5.1 |
| SUSE/openSUSE Tumbleweedgeneric | >=? <2.0.7-3.1 | 2.0.7-3.1 |
| SUSE/SUSE Liberty Linux 10generic | >=? <2.0.6-5.el10_2.3 | 2.0.6-5.el10_2.3 |
| SUSE/SUSE Liberty Linux 8generic | >=? <2.0.3-2.el8_10.3 | 2.0.3-2.el8_10.3 |
| SUSE/SUSE Liberty Linux 9generic | >=? <2.0.3-12.el9_8.3 | 2.0.3-12.el9_8.3 |
| SUSE/SUSE Linux Enterprise Desktop 15 SP7generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise High Performance Computing 15 SP4-ESPOSgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise High Performance Computing 15 SP4-LTSSgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise High Performance Computing 15 SP5-ESPOSgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise High Performance Computing 15 SP5-LTSSgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise Module for Basesystem 15 SP7generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise Server 12 SP5-LTSSgeneric | >=? <2.0.3-3.6.1 | 2.0.3-3.6.1 |
| SUSE/SUSE Linux Enterprise Server 15 SP4-LTSSgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise Server 15 SP5-LTSSgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise Server 15 SP6-LTSSgeneric | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise Server 15 SP7generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise Server 16.0generic | >=? <2.0.7-160000.5.1 | 2.0.7-160000.5.1 |
| SUSE/SUSE Linux Enterprise Server for SAP Applications 15 SP4generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise Server for SAP Applications 15 SP5generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise Server for SAP Applications 15 SP6generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise Server for SAP Applications 15 SP7generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Linux Enterprise Server for SAP applications 16.0generic | >=? <2.0.7-160000.5.1 | 2.0.7-160000.5.1 |
| SUSE/SUSE Linux Enterprise Server LTSS Extended Security 12 SP5generic | >=? <2.0.3-3.6.1 | 2.0.3-3.6.1 |
| SUSE/SUSE Manager Proxy LTS 4.3generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Manager Retail Branch Server LTS 4.3generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
| SUSE/SUSE Manager Server LTS 4.3generic | >=? <2.0.3-150000.3.6.1 | 2.0.3-150000.3.6.1 |
Published upstream
Sep 10, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 10, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Sep 10, 2026
fs_read_glyphs() in the libXfont2 font-server client (src/fc/fserve.c) indexes the per-character encoding[] array using num_chars from the FS_QueryXBitmaps16 reply, but that array was allocated with a size derived from num_extents in the separate FS_QueryXExtents16 reply. The two CARD32 fields are never cross-checked. A malicious or compromised font server can send a small num_extents (e.g. 1) in the extents reply, then a large num_chars (e.g. 100000) in the bitmaps reply. This causes attacker-controlled out-of-bounds heap read and writes.
Quoted source text, attributed separately from HOL analysis.