DevSecOps Toolkit

CVE record

CVE-2026-34003

HIGHCVSS 7.8

A flaw was found in the X.Org X server's XKB key types request validation. A local attacker could send a specially crafted request to the X server, leading to an out-of-bounds memory access vulnerability. This could result in the disclosure of sensitive information or cause the server to crash, leading to a Denial of Service (DoS). In certain configurations, higher impact outcomes may be possible.

Vulnerability metadata

Published
2026-04-23T10:46:24.920Z
Modified
2026-05-19T22:46:53.177Z
EPSS
Not available
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

References