Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

SUSE-SU-2025:02191-1

Опубликовано: 01 июл. 2025
Источник: suse-cvrf

Описание

Security update for xwayland

This update for xwayland fixes the following issues:

  • CVE-2025-49176: Fixed the integer overflow in Big Requests Extension (bsc#1244084).

Список пакетов

SUSE Linux Enterprise Workstation Extension 15 SP6
xwayland-24.1.1-150600.5.15.1
openSUSE Leap 15.6
xwayland-24.1.1-150600.5.15.1
xwayland-devel-24.1.1-150600.5.15.1

Описание

A flaw was found in the Big Requests extension. The request length is multiplied by 4 before checking against the maximum allowed size, potentially causing an integer overflow and bypassing the size check.


Затронутые продукты
SUSE Linux Enterprise Workstation Extension 15 SP6:xwayland-24.1.1-150600.5.15.1
openSUSE Leap 15.6:xwayland-24.1.1-150600.5.15.1
openSUSE Leap 15.6:xwayland-devel-24.1.1-150600.5.15.1

Ссылки