CyberICT

CVE-2026-34001

Microsoft · Published May 6, 2026

CVSS v3.1

HIGH
Patch availableGet patch

Description

Xorg: xwayland: x.org x server: use-after-free vulnerability leads to server crash and potential memory corruption. Xorg: xwayland: x.org x server: use-after-free vulnerability leads to server crash and potential memory corruption

Affected Products

  • cbl2 xorg-x11-server 1.20.10-16 on CBL Mariner 2.0
  • azl3 xorg-x11-server-Xwayland 24.1.6-3 on Azure Linux 3.0
  • azl3 xorg-x11-server-Xwayland 24.1.6-4 on Azure Linux 3.0
  • cbl2 xorg-x11-server 1.20.10-16

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U