vulnerability

Ubuntu: (Multiple Advisories) (CVE-2025-49180): X.Org X Server vulnerabilities

Severity
7
CVSS
(AV:L/AC:L/Au:S/C:C/I:C/A:C)
Published
Jun 17, 2025
Added
Jun 18, 2025
Modified
Aug 18, 2025

Description

A flaw was found in the RandR extension, where the RRChangeProviderProperty function does not properly validate input. This issue leads to an integer overflow when computing the total size to allocate.

Solutions

ubuntu-pro-upgrade-xserver-xorg-coreubuntu-pro-upgrade-xserver-xorg-core-hwe-16-04ubuntu-pro-upgrade-xserver-xorg-core-hwe-18-04ubuntu-pro-upgrade-xwaylandubuntu-pro-upgrade-xwayland-hwe-16-04ubuntu-pro-upgrade-xwayland-hwe-18-04
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.