Описание
Security update for xwayland
This update for xwayland fixes the following issues:
- CVE-2025-49176: Fixed the integer overflow in Big Requests Extension (bsc#1244084).
Список пакетов
SUSE Linux Enterprise Workstation Extension 15 SP6
xwayland-24.1.1-150600.5.15.1
openSUSE Leap 15.6
xwayland-24.1.1-150600.5.15.1
xwayland-devel-24.1.1-150600.5.15.1
Ссылки
- Link for SUSE-SU-2025:02191-1
- E-Mail link for SUSE-SU-2025:02191-1
- SUSE Security Ratings
- SUSE Bug 1244084
- SUSE CVE CVE-2025-49176 page
Описание
A flaw was found in the Big Requests extension. The request length is multiplied by 4 before checking against the maximum allowed size, potentially causing an integer overflow and bypassing the size check.
Затронутые продукты
SUSE Linux Enterprise Workstation Extension 15 SP6:xwayland-24.1.1-150600.5.15.1
openSUSE Leap 15.6:xwayland-24.1.1-150600.5.15.1
openSUSE Leap 15.6:xwayland-devel-24.1.1-150600.5.15.1
Ссылки
- CVE-2025-49176
- SUSE Bug 1244084