Out-of-bounds memory access vulnerability in the XKB key types request validation of the X.Org X server. The function CheckKeyTypes() loops over elements derived from the client’s request but does not perform adequate bounds checking to guarantee that subsequent reads remain within the request payload. A specially crafted request can cause CheckKeyTypes() to read uninitialized memory past the end of the request data, potentially leading to information exposure and/or a server crash. In certain configurations (as indicated by the submitted impact notes), this memory-safety flaw may be exploitable for higher impact outcomes.
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:10739 https://access.redhat.com/errata/RHSA-2026:10739
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:11352 https://access.redhat.com/errata/RHSA-2026:11352
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:11369 https://access.redhat.com/errata/RHSA-2026:11369
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:11388 https://access.redhat.com/errata/RHSA-2026:11388
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:11656 https://access.redhat.com/errata/RHSA-2026:11656
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:11692 https://access.redhat.com/errata/RHSA-2026:11692
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2026:13414 https://access.redhat.com/errata/RHSA-2026:13414
This issue has been addressed in the following products: Red Hat Enterprise Linux 10 Via RHSA-2026:19125 https://access.redhat.com/errata/RHSA-2026:19125
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:19344 https://access.redhat.com/errata/RHSA-2026:19344
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:19343 https://access.redhat.com/errata/RHSA-2026:19343
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2026:19342 https://access.redhat.com/errata/RHSA-2026:19342
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2026:20562 https://access.redhat.com/errata/RHSA-2026:20562
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2026:20557 https://access.redhat.com/errata/RHSA-2026:20557
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2026:20547 https://access.redhat.com/errata/RHSA-2026:20547
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2026:20560 https://access.redhat.com/errata/RHSA-2026:20560
This issue has been addressed in the following products: Red Hat Enterprise Linux 10.0 Extended Update Support Via RHSA-2026:20563 https://access.redhat.com/errata/RHSA-2026:20563
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:20561 https://access.redhat.com/errata/RHSA-2026:20561
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:20558 https://access.redhat.com/errata/RHSA-2026:20558
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2026:20575 https://access.redhat.com/errata/RHSA-2026:20575
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Extended Lifecycle Support Via RHSA-2026:20590 https://access.redhat.com/errata/RHSA-2026:20590
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions Via RHSA-2026:20576 https://access.redhat.com/errata/RHSA-2026:20576
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2026:20555 https://access.redhat.com/errata/RHSA-2026:20555
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2026:21699 https://access.redhat.com/errata/RHSA-2026:21699
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2026:21712 https://access.redhat.com/errata/RHSA-2026:21712
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2026:21715 https://access.redhat.com/errata/RHSA-2026:21715
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2026:21716 https://access.redhat.com/errata/RHSA-2026:21716
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2026:21718 https://access.redhat.com/errata/RHSA-2026:21718
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2026:21741 https://access.redhat.com/errata/RHSA-2026:21741
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2026:21742 https://access.redhat.com/errata/RHSA-2026:21742
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.6 Extended Update Support Via RHSA-2026:22424 https://access.redhat.com/errata/RHSA-2026:22424
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Extended Lifecycle Support Via RHSA-2026:22456 https://access.redhat.com/errata/RHSA-2026:22456
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On Via RHSA-2026:23254 https://access.redhat.com/errata/RHSA-2026:23254
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions Red Hat Enterprise Linux 8.8 Telecommunications Update Service Via RHSA-2026:23255 https://access.redhat.com/errata/RHSA-2026:23255
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION Via RHSA-2026:23496 https://access.redhat.com/errata/RHSA-2026:23496
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On Via RHSA-2026:24341 https://access.redhat.com/errata/RHSA-2026:24341