Denial of Service Vulnerability in libXpm Affects FreeDesktop Foundation Product
CVE-2026-94287
5.5MEDIUM
What is CVE-2026-94287?
A vulnerability in libXpm prior to version 3.5.19 allows local attackers to exploit an unsigned underflow condition within the write path. This could lead to excessive CPU usage and memory exhaustion, resulting in a denial of service for users. Such exploitation could significantly affect system performance, making it crucial for users to update to the latest version to mitigate potential risks.
Affected Version(s)
libXpm 0 < 3.5.19
