buildroot ▾
›
master ▾
›
vulnerability
›
CVE-2025-49180
Component Overview
Vulnerability Overview
Name
CVE-2025-49180
Source
NVD (
link
)
Debian (
link
)
Description
A flaw was found in the RandR extension, where the RRChangeProviderProperty function does not properly validate input. This issue leads to an integer overflow when computing the total size to allocate.
CWEs
CWE-190
Published Date
Jun 17, 2025
Updated Date
Jun 30, 2026
Workaround
-
Advisories
Analysis
#
Affected Component
Analysis
xserver_xorg-server
Exploitable
Vulnerability Ratings
#
7.8
CVSSv31
NaN
other
Others affected component
#
Name
Project
Project Version
Version
Status
xserver_xorg-server
buildroot
2025.02.x
21.1.24
Exploitable