Name
CVE-2025-49180
Description
A flaw was found in the RandR extension, where the RRChangeProviderProperty function does not properly validate input. This issue leads to an integer overflow when computing the total size to allocate.
CWEs
Published Date
Updated Date
Workaround
-
Advisories
Analysis#
Vulnerability Ratings#
7.8
CVSSv31
NaN
other
Others affected components#
Resolved with patches#
xserver-xorg (yocto:kirkstone)
#
Title
Author
Resolve
1
randr: Check for overflow in RRChangeProviderProperty()
Olivier Fourdan <ofourdan@redhat.com>
CVE-2025-49180
2
xfree86: Check for RandR provider functions
Olivier Fourdan <ofourdan@redhat.com>
CVE-2025-49180
xwayland (yocto:kirkstone)
#
Title
Author
Resolve
1
randr: Check for overflow in RRChangeProviderProperty()
Olivier Fourdan <ofourdan@redhat.com>
CVE-2025-49180
xwayland (yocto:scarthgap)
#
Title
Author
Resolve
1
randr: Check for overflow in RRChangeProviderProperty()
Olivier Fourdan <ofourdan@redhat.com>
CVE-2025-49180