Back to Database
Status published
High
CVE-2025-49180
Xorg-x11-server-xwayland: xorg-x11-server: tigervnc: integer overflow in x resize, rotate and reflect (randr) extension
Vulnerability Description
A flaw was found in the RandR extension, where the RRChangeProviderProperty function does not properly validate input. This issue leads to an integer overflow when computing the total size to allocate.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2025-49180
Credits & Attribution
No credits recorded in the NVD database.
References
- https://access.redhat.com/errata/RHSA-2025:10258
- https://access.redhat.com/errata/RHSA-2025:10342
- https://access.redhat.com/errata/RHSA-2025:10343
- https://access.redhat.com/errata/RHSA-2025:10344
- https://access.redhat.com/errata/RHSA-2025:10346
- https://access.redhat.com/errata/RHSA-2025:10347
- https://access.redhat.com/errata/RHSA-2025:10348
- https://access.redhat.com/errata/RHSA-2025:10349
- https://access.redhat.com/errata/RHSA-2025:10350
- https://access.redhat.com/errata/RHSA-2025:10351
- https://access.redhat.com/errata/RHSA-2025:10352
- https://access.redhat.com/errata/RHSA-2025:10355
- https://access.redhat.com/errata/RHSA-2025:10356
- https://access.redhat.com/errata/RHSA-2025:10360
- https://access.redhat.com/errata/RHSA-2025:10370
- https://access.redhat.com/errata/RHSA-2025:10374
- https://access.redhat.com/errata/RHSA-2025:10375
- https://access.redhat.com/errata/RHSA-2025:10376
- https://access.redhat.com/errata/RHSA-2025:10377
- https://access.redhat.com/errata/RHSA-2025:10378
- https://access.redhat.com/errata/RHSA-2025:10381
- https://access.redhat.com/errata/RHSA-2025:10410
- https://access.redhat.com/errata/RHSA-2025:9303
- https://access.redhat.com/errata/RHSA-2025:9304
- https://access.redhat.com/errata/RHSA-2025:9305
- https://access.redhat.com/errata/RHSA-2025:9306
- https://access.redhat.com/errata/RHSA-2025:9392
- https://access.redhat.com/errata/RHSA-2025:9964
- https://access.redhat.com/security/cve/CVE-2025-49180
- https://bugzilla.redhat.com/show_bug.cgi?id=2369981
- https://gitlab.freedesktop.org/xorg/xserver/-/commit/3c3a4b767b16174d3213055947ea7f4f88e10ec6
More from X.Org
View All →CVE-2025-62231
Xorg: xmayland: value overflow in xkbsetcompatmap()
High
7.3
CVE-2025-62230
Xorg: xwayland: use-after-free in xkb client resource removal
High
7.3
CVE-2025-62229
Xorg: xmayland: use-after-free in xpresentnotify structure creation
High
7.3
CVE-2025-49179
Xorg-x11-server-xwayland: xorg-x11-server: tigervnc: integer overflow in x record extension
High
7.3
CVE-2025-49178
Xorg-x11-server-xwayland: xorg-x11-server: tigervnc: unprocessed client request due to bytes to ignore
Medium
5.5
Affected Vendor
X.Org
View all reports →Affected Software
xwayland, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION, Red Hat Enterprise Linux 7.7 Advanced Update Support, Red Hat Enterprise Linux 7 Extended Lifecycle Support, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 8.2 Advanced Update Support, Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 8.4 Extended Update Support Long-Life Add-On, Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support, Red Hat Enterprise Linux 8.6 Extended Update Support Long-Life Add-On, Red Hat Enterprise Linux 8.6 Telecommunications Update Service, Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions, Red Hat Enterprise Linux 8.8 Extended Update Support Long-Life Add-On, Red Hat Enterprise Linux 8.8 Telecommunications Update Service, Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions, Red Hat Enterprise Linux 9, Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions, Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions, Red Hat Enterprise Linux 9.4 Extended Update Support, Red Hat Enterprise Linux 6
Vulnerable Versions:
0, 0:24.1.5-4.el10_0, 0:1.1.0-25.el6_10.1, 0:1.8.0-17.el7_7.1, 0:1.20.4-32.el7_9, 0:1.8.0-36.el7_9.2, 0:1.20.11-26.el8_10, 0:21.1.3-18.el8_10, 0:1.15.0-7.el8_10, 0:1.9.0-15.el8_2.14, 0:1.20.6-4.el8_2, 0:1.20.10-2.el8_4, 0:1.11.0-8.el8_4.13, 0:1.12.0-6.el8_6.14, 0:21.1.3-2.el8_6.4, 0:1.20.11-5.el8_6.3, 0:1.20.11-16.el8_8, 0:21.1.3-11.el8_8, 0:1.12.0-15.el8_8.14, 0:1.20.11-31.el9_6, 0:23.2.7-4.el9_6, 0:1.14.1-8.el9_6, 0:21.1.3-3.el9_0, 0:1.20.11-11.el9_0, 0:1.11.0-22.el9_0.15, 0:21.1.3-8.el9_2, 0:1.20.11-18.el9_2, 0:1.12.0-14.el9_2.12, 0:22.1.9-6.el9_4, 0:1.20.11-26.el9_4, 0:1.13.1-8.el9_4.7
Timeline
Official Publish:
June 17th, 2025
Last Modified:
June 30th, 2026
Added to House:
July 22nd, 2026
CVSS Vectors
V3:
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H