Logo
vulnerabilityCVE-2025-26594
Name
CVE-2025-26594
Source
NVD ( link)Debian ( link)
Description
A use-after-free flaw was found in X.Org and Xwayland. The root cursor is referenced in the X server as a global variable. If a client frees the root cursor, the internal reference points to freed memory and causes a use-after-free.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
tigervnc
Not Affected

Vulnerability Ratings#


7.8
CVSSv31
7.8
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
yocto
kirkstone
1.11.0
Not Affected
yocto
scarthgap
1.11.0
Not Affected