INFSA-2025:9304: xorg-x11-server-Xwayland security update
Information about definition
Identificator: INFSA-2025:9304
Type: security
Release date: 2025-07-17 21:22:29 UTC
Information about package
Xwayland is an X server for running X clients under Wayland.
Vulnerabilities description
- CVE-2025-49175
A flaw was found in the X Rendering extension's handling of animated cursors. If a client provides no cursors, the server assumes at least one is present, leading to an out-of-bounds read and potential crash.
- CVE-2025-49176
A flaw was found in the Big Requests extension. The request length is multiplied by 4 before checking against the maximum allowed size, potentially causing an integer overflow and bypassing the size check.
- CVE-2025-49178
A flaw was found in the X server's request handling. Non-zero 'bytes to ignore' in a client's request can cause the server to skip processing another client's request, potentially leading to a denial of service.
- CVE-2025-49179
A flaw was found in the X Record extension. The RecordSanityCheckRegisterClients function does not check for an integer overflow when computing request length, which allows a client to bypass length checks.
- CVE-2025-49180
A flaw was found in the RandR extension, where the RRChangeProviderProperty function does not properly validate input. This issue leads to an integer overflow when computing the total size to allocate.
- CVE-2025-49177
A flaw was found in the XFIXES extension. The XFixesSetClientDisconnectMode handler does not validate the request length, allowing a client to read unintended memory from previous requests.
Severity level
CVE | Score CVSS 2.0 | Score CVSS 3.x | Score CVSS 4.0 |
---|---|---|---|
NIST — CVE-2025-49175
|
no information | 6.1 | no information |
NIST — CVE-2025-49176
|
no information | 7.3 | no information |
NIST — CVE-2025-49177
|
no information | 6.1 | no information |
NIST — CVE-2025-49178
|
no information | 5.5 | no information |
NIST — CVE-2025-49179
|
no information | 7.3 | no information |
NIST — CVE-2025-49180
|
no information | 7.8 | no information |
Updated packages