[CLSA-2025:1765209058] xorg-x11-server: Fix of 4 CVEs
Type:
security
Severity:
Important
Release date:
2025-12-08 15:51:02 UTC
Description:
- CVE-2025-9632: fix buffer overflow in _XkbSetCompatMap() - CVE-2025-62229: fix use-after-free condition due improper error handling during notification creation leading to DoS - CVE-2025-62230: fix use-after-free condition due freeing certain data structures without properly detaching related resources - CVE-2025-62231: fix unsigned short overflow in XkbSetCompatMap() function
Updated packages:
  • xorg-x11-server-Xdmx-1.20.4-99.el7_9.tuxcare.els8.x86_64.rpm
    sha:4261c429173b70fd602a223e2212f8576858a5f6967892c29207cda89a87dd2c
  • xorg-x11-server-Xephyr-1.20.4-99.el7_9.tuxcare.els8.x86_64.rpm
    sha:36a1a6c8828d603fb87e54bb9c89b8cde8d64c312dd3b0eba3518c7e20bbdab3
  • xorg-x11-server-Xnest-1.20.4-99.el7_9.tuxcare.els8.x86_64.rpm
    sha:e54d36748532b9d7f968cc2f13119aae0bd8c6c086cf5091db4049cb8a7d5d68
  • xorg-x11-server-Xorg-1.20.4-99.el7_9.tuxcare.els8.x86_64.rpm
    sha:feea94a12f5370883779680cb13e13d2bc057bbd28d4766216e7dfe4a5df9bb6
  • xorg-x11-server-Xvfb-1.20.4-99.el7_9.tuxcare.els8.x86_64.rpm
    sha:6d95ddc1a3cfc28b01308be21ec0571c72d33aa2963a0d0d506b1e393a5408ab
  • xorg-x11-server-Xwayland-1.20.4-99.el7_9.tuxcare.els8.x86_64.rpm
    sha:b083f456b2e5d6374215c51cdfc51fc5ba31150729fb73605bfb247b0c702346
  • xorg-x11-server-common-1.20.4-99.el7_9.tuxcare.els8.x86_64.rpm
    sha:0793a9555673bd1ea9ebc37902beccc6230ba332490aa680a03f7de78fce1f0c
  • xorg-x11-server-devel-1.20.4-99.el7_9.tuxcare.els8.i686.rpm
    sha:865696f374a082e1fad457581acbef5353a1d8c90cf2aa985e2c05d4f5b627f9
  • xorg-x11-server-devel-1.20.4-99.el7_9.tuxcare.els8.x86_64.rpm
    sha:6153952b32da92c12ca258a4357fce17e7ccd7628dd13c71a086224a90ac8ef9
  • xorg-x11-server-source-1.20.4-99.el7_9.tuxcare.els8.noarch.rpm
    sha:32da819f0a4db01fdeba56509fd8fee1420ed86c5ae3015d9435f3361fb97339
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.