CVE-2025-49180

A flaw was found in the RandR extension, where the RRChangeProviderProperty function does not properly validate input. This issue leads to an integer overflow when computing the total size to allocate.
References
Link Resource
https://access.redhat.com/errata/RHSA-2025:10258
https://access.redhat.com/errata/RHSA-2025:10342
https://access.redhat.com/errata/RHSA-2025:10343
https://access.redhat.com/errata/RHSA-2025:10344
https://access.redhat.com/errata/RHSA-2025:10346
https://access.redhat.com/errata/RHSA-2025:10347
https://access.redhat.com/errata/RHSA-2025:10348
https://access.redhat.com/errata/RHSA-2025:10349
https://access.redhat.com/errata/RHSA-2025:10350
https://access.redhat.com/errata/RHSA-2025:10351
https://access.redhat.com/errata/RHSA-2025:10352
https://access.redhat.com/errata/RHSA-2025:10355
https://access.redhat.com/errata/RHSA-2025:10356
https://access.redhat.com/errata/RHSA-2025:10360
https://access.redhat.com/errata/RHSA-2025:10370
https://access.redhat.com/errata/RHSA-2025:10374
https://access.redhat.com/errata/RHSA-2025:10375
https://access.redhat.com/errata/RHSA-2025:10376
https://access.redhat.com/errata/RHSA-2025:10377
https://access.redhat.com/errata/RHSA-2025:10378
https://access.redhat.com/errata/RHSA-2025:10381
https://access.redhat.com/errata/RHSA-2025:10410
https://access.redhat.com/errata/RHSA-2025:9303
https://access.redhat.com/errata/RHSA-2025:9304
https://access.redhat.com/errata/RHSA-2025:9305
https://access.redhat.com/errata/RHSA-2025:9306
https://access.redhat.com/errata/RHSA-2025:9392
https://access.redhat.com/errata/RHSA-2025:9964
https://access.redhat.com/security/cve/CVE-2025-49180
https://bugzilla.redhat.com/show_bug.cgi?id=2369981
https://gitlab.freedesktop.org/xorg/xserver/-/commit/3c3a4b767b16174d3213055947ea7f4f88e10ec6
https://lists.debian.org/debian-lts-announce/2025/06/msg00028.html
Configurations

No configuration.

History

09 Dec 2025, 23:15

Type Values Removed Values Added
References
  • () https://gitlab.freedesktop.org/xorg/xserver/-/commit/3c3a4b767b16174d3213055947ea7f4f88e10ec6 -

03 Nov 2025, 20:19

Type Values Removed Values Added
References
  • () https://lists.debian.org/debian-lts-announce/2025/06/msg00028.html -

07 Jul 2025, 14:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:10381 -
  • () https://access.redhat.com/errata/RHSA-2025:10410 -

07 Jul 2025, 08:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:10344 -
  • () https://access.redhat.com/errata/RHSA-2025:10346 -
  • () https://access.redhat.com/errata/RHSA-2025:10349 -
  • () https://access.redhat.com/errata/RHSA-2025:10350 -
  • () https://access.redhat.com/errata/RHSA-2025:10351 -
  • () https://access.redhat.com/errata/RHSA-2025:10352 -
  • () https://access.redhat.com/errata/RHSA-2025:10355 -
  • () https://access.redhat.com/errata/RHSA-2025:10356 -
  • () https://access.redhat.com/errata/RHSA-2025:10360 -
  • () https://access.redhat.com/errata/RHSA-2025:10370 -
  • () https://access.redhat.com/errata/RHSA-2025:10374 -
  • () https://access.redhat.com/errata/RHSA-2025:10375 -
  • () https://access.redhat.com/errata/RHSA-2025:10376 -
  • () https://access.redhat.com/errata/RHSA-2025:10377 -
  • () https://access.redhat.com/errata/RHSA-2025:10378 -

07 Jul 2025, 03:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:10342 -
  • () https://access.redhat.com/errata/RHSA-2025:10343 -
  • () https://access.redhat.com/errata/RHSA-2025:10347 -
  • () https://access.redhat.com/errata/RHSA-2025:10348 -

02 Jul 2025, 20:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:10258 -

30 Jun 2025, 20:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:9964 -

30 Jun 2025, 09:15

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 6.1
v2 : unknown
v3 : 7.8

23 Jun 2025, 19:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:9303 -
  • () https://access.redhat.com/errata/RHSA-2025:9304 -
  • () https://access.redhat.com/errata/RHSA-2025:9305 -
  • () https://access.redhat.com/errata/RHSA-2025:9306 -
  • () https://access.redhat.com/errata/RHSA-2025:9392 -

23 Jun 2025, 07:15

Type Values Removed Values Added
References
  • () https://access.redhat.com/errata/RHSA-2025:9303 -
  • () https://access.redhat.com/errata/RHSA-2025:9304 -
  • () https://access.redhat.com/errata/RHSA-2025:9305 -
  • () https://access.redhat.com/errata/RHSA-2025:9306 -
References
  • () https://access.redhat.com/errata/RHSA-2025:9303 -
  • () https://access.redhat.com/errata/RHSA-2025:9304 -
  • () https://access.redhat.com/errata/RHSA-2025:9305 -
  • () https://access.redhat.com/errata/RHSA-2025:9306 -
References
  • () https://access.redhat.com/errata/RHSA-2025:9303 -
  • () https://access.redhat.com/errata/RHSA-2025:9304 -
  • () https://access.redhat.com/errata/RHSA-2025:9305 -
  • () https://access.redhat.com/errata/RHSA-2025:9306 -
Summary
  • (es) Se detectó una falla en la extensión RandR, donde la función RRChangeProviderProperty no valida correctamente la entrada. Este problema provoca un desbordamiento de enteros al calcular el tamaño total a asignar.

17 Jun 2025, 20:50

Type Values Removed Values Added
References
  • {'url': 'https://access.redhat.com/errata/RHSA-2025:9303', 'source': 'secalert@redhat.com'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2025:9304', 'source': 'secalert@redhat.com'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2025:9305', 'source': 'secalert@redhat.com'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2025:9306', 'source': 'secalert@redhat.com'}
References
  • {'url': 'https://access.redhat.com/errata/RHSA-2025:9303', 'source': 'secalert@redhat.com'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2025:9304', 'source': 'secalert@redhat.com'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2025:9305', 'source': 'secalert@redhat.com'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2025:9306', 'source': 'secalert@redhat.com'}
References
  • {'url': 'https://access.redhat.com/errata/RHSA-2025:9303', 'source': 'secalert@redhat.com'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2025:9304', 'source': 'secalert@redhat.com'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2025:9305', 'source': 'secalert@redhat.com'}
  • {'url': 'https://access.redhat.com/errata/RHSA-2025:9306', 'source': 'secalert@redhat.com'}

17 Jun 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-17 15:15

Updated : 2025-12-09 23:15


NVD link : CVE-2025-49180

Mitre link : CVE-2025-49180

CVE.ORG link : CVE-2025-49180


JSON object : View

Products Affected

No product.

CWE
CWE-190

Integer Overflow or Wraparound