Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2025:7458

Опубликовано: 03 окт. 2025
Источник: rocky
Оценка: Important

Описание

Important: xorg-x11-server-Xwayland security update

Xwayland is an X server for running X clients under Wayland.

Security Fix(es):

  • xorg-x11-server: tigervnc: heap-based buffer overflow privilege escalation vulnerability (CVE-2024-9632)

  • X.Org: Xwayland: Use-after-free of the root cursor (CVE-2025-26594)

  • xorg: xwayland: Use-after-free in SyncInitTrigger() (CVE-2025-26601)

  • xorg: xwayland: Use-after-free in PlayReleasedEvents() (CVE-2025-26600)

  • xorg: xwayland: Use of uninitialized pointer in compRedirectWindow() (CVE-2025-26599)

  • xorg: xwayland: Out-of-bounds write in CreatePointerBarrierClient() (CVE-2025-26598)

  • xorg: xwayland: Buffer overflow in XkbChangeTypesOfKey() (CVE-2025-26597)

  • xorg: xwayland: Heap overflow in XkbWriteKeySyms() (CVE-2025-26596)

  • Xorg: xwayland: Buffer overflow in XkbVModMaskText() (CVE-2025-26595)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Затронутые продукты

  • Rocky Linux 10

НаименованиеАрхитектураРелизRPM
xorg-x11-server-Xwaylandx86_643.el10_0xorg-x11-server-Xwayland-24.1.5-3.el10_0.x86_64.rpm

Показывать по

Связанные уязвимости

rocky
3 месяца назад

Moderate: xorg-x11-server-Xwayland security update

rocky
3 месяца назад

Moderate: xorg-x11-server security update

oracle-oval
6 месяцев назад

ELSA-2025-7458: xorg-x11-server-Xwayland security update (IMPORTANT)

oracle-oval
7 месяцев назад

ELSA-2025-7165: xorg-x11-server-Xwayland security update (MODERATE)

oracle-oval
7 месяцев назад

ELSA-2025-7163: xorg-x11-server security update (MODERATE)