Alerts This Week
Warning Icon 1 535
Alerts This Week
Warning Icon 1 535

openSUSE Leap 16.0: xwayland Important Issues 2025-20099-1

opensuse
Calendar Grey November 28, 2025
Dist Opensuse Esm H88
Critical update for openSUSE addresses important issues in XWayland; fixes use-after-free and overflow vulnerabilities.
An update that solves 3 vulnerabilities and has 3 bug fixes can now be installed.

Description

This update for xwayland fixes the following issues:

- CVE-2025-62229: Fixed use-after-free in XPresentNotify structures creation (bsc#1251958).

- CVE-2025-62230: Fixed use-after-free in Xkb client resource removal (bsc#1251959).

- CVE-2025-62231: Fixed value overflow in Xkb extension XkbSetCompatMap() (bsc#1251960).

Patch instructions:

To install this openSUSE security update use the suse recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 16.0

zypper in -t patch openSUSE-Leap-16.0-65=1

Patch

Package List

- openSUSE Leap 16.0:

xwayland-24.1.6-160000.3.1

xwayland-devel-24.1.6-160000.3.1

References

* bsc#1251958

* bsc#1251959

* bsc#1251960

References:

* https://www.suse.com/security/cve/CVE-2025-62229.html

* https://www.suse.com/security/cve/CVE-2025-62230.html

* https://www.suse.com/security/cve/CVE-2025-62231.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2025-20099-1
Rating: important
Affected Products: openSUSE Leap 16.0 -------------------------------------------------------------

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here