Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -3 articles for you...
100

SUSE: xwayland Important Use-after-Free Fix CVE-2025-62229-31

* bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: . # Security update for xwayland Announcement ID: SUSE-SU-2025:21149-1 Release Date: 2025-11-27T10:11:16Z Rating: important References: * bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: * CVE-2025-62229 * CVE-2025-62230 * CVE-2025-62231 CVSS scores: * CVE-2025-62229 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62229 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62229 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H * CVE-2025-62230 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62230 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62230 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H * CVE-2025-62231 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62231 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62231 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H Affected Products: * SUSE Linux Enterprise Server 16.0 * SUSE Linux Enterprise Server for SAP Applications 16.0 An update that solves three vulnerabilities can now be installed. ## Description: This update for xwayland fixes the following issues: * CVE-2025-62229: Fixed use-after-free in XPresentNotify structures creation (bsc#1251958). * CVE-2025-62230: Fixed use-after-free in Xkb client resource removal (bsc#1251959). * CVE-2025-62231: Fixed value overflow in Xkb extension XkbSetCompatMap() (bsc#1251960). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 16.0 zypper in -t patch SUSE-SLES-16.0-65=1 * SUSE Linux Enterprise Server for SAP Applications 16.0 zypper in-t patch SUSE-SLES-16.0-65=1 ## Package List: * SUSE Linux Enterprise Server 16.0 (aarch64 ppc64le s390x x86_64) * xwayland-devel-24.1.6-160000.3.1 * xwayland-debugsource-24.1.6-160000.3.1 * xwayland-24.1.6-160000.3.1 * xwayland-debuginfo-24.1.6-160000.3.1 * SUSE Linux Enterprise Server for SAP Applications 16.0 (ppc64le x86_64) * xwayland-devel-24.1.6-160000.3.1 * xwayland-debugsource-24.1.6-160000.3.1 * xwayland-24.1.6-160000.3.1 * xwayland-debuginfo-24.1.6-160000.3.1 ## References: * https://www.suse.com/security/cve/CVE-2025-62229.html * https://www.suse.com/security/cve/CVE-2025-62230.html * https://www.suse.com/security/cve/CVE-2025-62231.html * https://bugzilla.suse.com/show_bug.cgi?id=1251958 * https://bugzilla.suse.com/show_bug.cgi?id=1251959 * https://bugzilla.suse.com/show_bug.cgi?id=1251960 . Critical security update for xwayland on SUSE affects server operations and addresses multiple vulnerabilities.. xwayland update, SUSE security patch, important vulnerabilities, system security fixes. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Dec 10, 2025 Important SuSE
202

openSUSE: xwayland Important Fixes for Use-after-Free Issues 2025:3863-1

An update that solves three vulnerabilities can now be installed.. # Security update for xwayland Announcement ID: SUSE-SU-2025:3863-1 Release Date: 2025-10-30T13:39:37Z Rating: important References: * bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: * CVE-2025-62229 * CVE-2025-62230 * CVE-2025-62231 CVSS scores: * CVE-2025-62229 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62229 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62229 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H * CVE-2025-62230 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62230 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62230 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H * CVE-2025-62231 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62231 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62231 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H Affected Products: * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Workstation Extension 15 SP6 An update that solves three vulnerabilities can now be installed. ## Description: This update for xwayland fixes the following issues: * Fixed use-after-free in XPresentNotify structures creation (CVE-2025-62229, bsc#1251958) * Fixed use-after-free in Xkb client resource removal (CVE-2025-62230, bsc#1251959) * Fixed value overflow in Xkb extension XkbSetCompatMap() (CVE-2025-62231, bsc#1251960) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch SUSE-2025-3863=1 openSUSE-SLE-15.6-2025-3863=1 * SUSE Linux Enterprise Workstation Extension 15 SP6 zypper in -t patch SUSE-SLE-Product-WE-15-SP6-2025-3863=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * xwayland-devel-24.1.1-150600.5.18.1 * xwayland-debuginfo-24.1.1-150600.5.18.1 * xwayland-debugsource-24.1.1-150600.5.18.1 * xwayland-24.1.1-150600.5.18.1 * SUSE Linux Enterprise Workstation Extension 15 SP6 (x86_64) * xwayland-debuginfo-24.1.1-150600.5.18.1 * xwayland-debugsource-24.1.1-150600.5.18.1 * xwayland-24.1.1-150600.5.18.1 ## References: * https://www.suse.com/security/cve/CVE-2025-62229.html * https://www.suse.com/security/cve/CVE-2025-62230.html * https://www.suse.com/security/cve/CVE-2025-62231.html * https://bugzilla.suse.com/show_bug.cgi?id=1251958 * https://bugzilla.suse.com/show_bug.cgi?id=1251959 * https://bugzilla.suse.com/show_bug.cgi?id=1251960 . This update addresses three important issues in xwayland affect openSUSE systems, including use-after-free errors.. openSUSE update,xwayland security,security patch,SUSE vulnerabilities. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 30, 2025 Important OpenSUSE
100

SUSE: xwayland Important Use-After-Free Threat Advisory 2025:3863-1

* bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: . # Security update for xwayland Announcement ID: SUSE-SU-2025:3863-1 Release Date: 2025-10-30T13:39:37Z Rating: important References: * bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: * CVE-2025-62229 * CVE-2025-62230 * CVE-2025-62231 CVSS scores: * CVE-2025-62229 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62229 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62229 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H * CVE-2025-62230 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62230 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62230 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H * CVE-2025-62231 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62231 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62231 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H Affected Products: * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Workstation Extension 15 SP6 An update that solves three vulnerabilities can now be installed. ## Description: This update for xwayland fixes the following issues: * Fixed use-after-free in XPresentNotify structures creation (CVE-2025-62229, bsc#1251958) * Fixed use-after-free in Xkb client resource removal (CVE-2025-62230, bsc#1251959) * Fixed value overflow in Xkb extension XkbSetCompatMap() (CVE-2025-62231, bsc#1251960) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in-t patch SUSE-2025-3863=1 openSUSE-SLE-15.6-2025-3863=1 * SUSE Linux Enterprise Workstation Extension 15 SP6 zypper in -t patch SUSE-SLE-Product-WE-15-SP6-2025-3863=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * xwayland-devel-24.1.1-150600.5.18.1 * xwayland-debuginfo-24.1.1-150600.5.18.1 * xwayland-debugsource-24.1.1-150600.5.18.1 * xwayland-24.1.1-150600.5.18.1 * SUSE Linux Enterprise Workstation Extension 15 SP6 (x86_64) * xwayland-debuginfo-24.1.1-150600.5.18.1 * xwayland-debugsource-24.1.1-150600.5.18.1 * xwayland-24.1.1-150600.5.18.1 ## References: * https://www.suse.com/security/cve/CVE-2025-62229.html * https://www.suse.com/security/cve/CVE-2025-62230.html * https://www.suse.com/security/cve/CVE-2025-62231.html * https://bugzilla.suse.com/show_bug.cgi?id=1251958 * https://bugzilla.suse.com/show_bug.cgi?id=1251959 * https://bugzilla.suse.com/show_bug.cgi?id=1251960 . SUSE updates xwayland to resolve important vulnerabilities including use-after-free and value overflow issues. Install now.. xwayland security fix, SUSE updates, important vulnerabilities, Linux security advisory. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 30, 2025 Important SuSE
100

SUSE: xorg-x11-server Important Use-After-Free Issues 2025:3864-1

* bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: . # Security update for xorg-x11-server Announcement ID: SUSE-SU-2025:3864-1 Release Date: 2025-10-30T13:40:02Z Rating: important References: * bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: * CVE-2025-62229 * CVE-2025-62230 * CVE-2025-62231 CVSS scores: * CVE-2025-62229 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62229 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62229 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H * CVE-2025-62230 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62230 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62230 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H * CVE-2025-62231 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62231 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62231 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H Affected Products: * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 * SUSE Linux Enterprise Workstation Extension 15 SP6 * SUSE Linux Enterprise Workstation Extension 15 SP7 An update that solves three vulnerabilities can now be installed. ## Description: This update for xorg-x11-server fixes the following issues: * Fixed use-after-free inXPresentNotify structures creation (CVE-2025-62229, bsc#1251958) * Fixed use-after-free in Xkb client resource removal (CVE-2025-62230, bsc#1251959) * Fixed value overflow in Xkb extension XkbSetCompatMap() (CVE-2025-62231, bsc#1251960) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2025-3864=1 * SUSE Linux Enterprise Server 15 SP3 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2025-3864=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2025-3864=1 * SUSE Linux Enterprise Workstation Extension 15 SP6 zypper in -t patch SUSE-SLE-Product-WE-15-SP6-2025-3864=1 * SUSE Linux Enterprise Workstation Extension 15 SP7 zypper in -t patch SUSE-SLE-Product-WE-15-SP7-2025-3864=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2025-3864=1 ## Package List: * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * xorg-x11-server-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debugsource-1.20.3-150200.22.5.118.1 * xorg-x11-server-sdk-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-1.20.3-150200.22.5.118.1 * xorg-x11-server-1.20.3-150200.22.5.118.1 * SUSE Linux Enterprise Server 15 SP3 LTSS (aarch64 ppc64le s390x x86_64) * xorg-x11-server-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debugsource-1.20.3-150200.22.5.118.1 * xorg-x11-server-sdk-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-1.20.3-150200.22.5.118.1 * xorg-x11-server-1.20.3-150200.22.5.118.1 * SUSE Linux Enterprise Serverfor SAP Applications 15 SP3 (ppc64le x86_64) * xorg-x11-server-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debugsource-1.20.3-150200.22.5.118.1 * xorg-x11-server-sdk-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-1.20.3-150200.22.5.118.1 * xorg-x11-server-1.20.3-150200.22.5.118.1 * SUSE Linux Enterprise Workstation Extension 15 SP6 (x86_64) * xorg-x11-server-wayland-1.20.3-150200.22.5.118.1 * xorg-x11-server-wayland-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debugsource-1.20.3-150200.22.5.118.1 * SUSE Linux Enterprise Workstation Extension 15 SP7 (x86_64) * xorg-x11-server-wayland-1.20.3-150200.22.5.118.1 * xorg-x11-server-wayland-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debugsource-1.20.3-150200.22.5.118.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * xorg-x11-server-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debugsource-1.20.3-150200.22.5.118.1 * xorg-x11-server-sdk-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-1.20.3-150200.22.5.118.1 * xorg-x11-server-1.20.3-150200.22.5.118.1 ## References: * https://www.suse.com/security/cve/CVE-2025-62229.html * https://www.suse.com/security/cve/CVE-2025-62230.html * https://www.suse.com/security/cve/CVE-2025-62231.html * https://bugzilla.suse.com/show_bug.cgi?id=1251958 * https://bugzilla.suse.com/show_bug.cgi?id=1251959 * https://bugzilla.suse.com/show_bug.cgi?id=1251960 . Critical update for SUSE xorg-x11-server addressing use-after-free and value overflow issues with important severity.. SUSE Security Update, xorg-x11-server Fix, Important Update, Use-After-Free, Value Overflow. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 30, 2025 Important SuSE
202

openSUSE: xorg-x11-server Important Fixes for Security Issues 2025:3872-1

An update that solves three vulnerabilities can now be installed.. # Security update for xorg-x11-server Announcement ID: SUSE-SU-2025:3872-1 Release Date: 2025-10-30T15:09:57Z Rating: important References: * bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: * CVE-2025-62229 * CVE-2025-62230 * CVE-2025-62231 CVSS scores: * CVE-2025-62229 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62229 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62229 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H * CVE-2025-62230 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62230 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62230 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H * CVE-2025-62231 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62231 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62231 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H Affected Products: * Basesystem Module 15-SP6 * Development Tools Module 15-SP6 * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that solves three vulnerabilities can now be installed. ## Description: This update for xorg-x11-server fixes the following issues: * Fixed use-after-free in XPresentNotify structures creation (CVE-2025-62229, bsc#1251958) * Fixed use-after-free in Xkb client resource removal (CVE-2025-62230, bsc#1251959) * Fixed value overflow in Xkb extension XkbSetCompatMap() (CVE-2025-62231, bsc#1251960) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run thecommand listed for your product: * openSUSE Leap 15.6 zypper in -t patch SUSE-2025-3872=1 openSUSE-SLE-15.6-2025-3872=1 * Basesystem Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP6-2025-3872=1 * Development Tools Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP6-2025-3872=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * xorg-x11-server-extra-21.1.11-150600.5.20.1 * xorg-x11-server-extra-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-sdk-21.1.11-150600.5.20.1 * xorg-x11-server-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-Xvfb-21.1.11-150600.5.20.1 * xorg-x11-server-Xvfb-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-source-21.1.11-150600.5.20.1 * xorg-x11-server-debugsource-21.1.11-150600.5.20.1 * xorg-x11-server-21.1.11-150600.5.20.1 * Basesystem Module 15-SP6 (aarch64 ppc64le s390x x86_64) * xorg-x11-server-extra-21.1.11-150600.5.20.1 * xorg-x11-server-extra-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-Xvfb-21.1.11-150600.5.20.1 * xorg-x11-server-Xvfb-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-debugsource-21.1.11-150600.5.20.1 * xorg-x11-server-21.1.11-150600.5.20.1 * Development Tools Module 15-SP6 (aarch64 ppc64le s390x x86_64) * xorg-x11-server-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-sdk-21.1.11-150600.5.20.1 * xorg-x11-server-debugsource-21.1.11-150600.5.20.1 ## References: * https://www.suse.com/security/cve/CVE-2025-62229.html * https://www.suse.com/security/cve/CVE-2025-62230.html * https://www.suse.com/security/cve/CVE-2025-62231.html * https://bugzilla.suse.com/show_bug.cgi?id=1251958 * https://bugzilla.suse.com/show_bug.cgi?id=1251959 * https://bugzilla.suse.com/show_bug.cgi?id=1251960 . An important security update for xorg-x11-server resolves three vulnerabilities, crucial for openSUSE. Stay secure!. xorg-x11-serverimportant vulnerabilities openSUSE patch. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 30, 2025 Important OpenSUSE
99

Slackware 15.0 xorg-server Critical Use-After-Free & Overflow Patch

New xorg-server packages are available for Slackware 15.0 and -current to fix security issues. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] xorg-server (SSA:2025-302-01) New xorg-server packages are available for Slackware 15.0 and -current to fix security issues. Here are the details from the Slackware 15.0 ChangeLog: +--------------------------+ patches/packages/xorg-server-1.20.14-i586-18_slack15.0.txz: Rebuilt. This update fixes security issues: Use-after-free in XPresentNotify structures creation. Use-after-free in Xkb client resource removal. Value overflow in Xkb extension XkbSetCompatMap(). These issues were found by Jan-Niklas Sohn working with Trend Micro Zero Day Initiative. For more information, see: https://lists.x.org/archives/xorg-announce/2025-October/003635.html https://www.cve.org/CVERecord?id=CVE-2025-62229 https://www.cve.org/CVERecord?id=CVE-2025-62230 https://www.cve.org/CVERecord?id=CVE-2025-62231 (* Security fix *) patches/packages/xorg-server-xephyr-1.20.14-i586-18_slack15.0.txz: Rebuilt. patches/packages/xorg-server-xnest-1.20.14-i586-18_slack15.0.txz: Rebuilt. patches/packages/xorg-server-xvfb-1.20.14-i586-18_slack15.0.txz: Rebuilt. patches/packages/xorg-server-xwayland-21.1.4-i586-16_slack15.0.txz: Rebuilt. This update fixes security issues: Use-after-free in XPresentNotify structures creation. Use-after-free in Xkb client resource removal. Value overflow in Xkb extension XkbSetCompatMap(). These issues were found by Jan-Niklas Sohn working with Trend Micro Zero Day Initiative. For more information, see: https://lists.x.org/archives/xorg-announce/2025-October/003635.html https://www.cve.org/CVERecord?id=CVE-2025-62229 https://www.cve.org/CVERecord?id=CVE-2025-62230 https://www.cve.org/CVERecord?id=CVE-2025-62231 (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ Thanks to the friendly folks at the OSU Open SourceLab (http://osuosl.org) for donating FTP and rsync hosting to the Slackware project! :-) Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you. Updated packages for Slackware 15.0: ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/xorg-server-1.20.14-i586-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/xorg-server-xephyr-1.20.14-i586-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/xorg-server-xnest-1.20.14-i586-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/xorg-server-xvfb-1.20.14-i586-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/xorg-server-xwayland-21.1.4-i586-16_slack15.0.txz Updated packages for Slackware x86_64 15.0: ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/xorg-server-1.20.14-x86_64-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/xorg-server-xephyr-1.20.14-x86_64-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/xorg-server-xnest-1.20.14-x86_64-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/xorg-server-xvfb-1.20.14-x86_64-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/xorg-server-xwayland-21.1.4-x86_64-16_slack15.0.txz Updated packages for Slackware -current: ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/x/xorg-server-21.1.20-i686-1.txz ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/x/xorg-server-xephyr-21.1.20-i686-1.txz ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/x/xorg-server-xnest-21.1.20-i686-1.txz ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/x/xorg-server-xvfb-21.1.20-i686-1.txz ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/x/xorg-server-xwayland-24.1.9-i686-1.txz Updated packagesfor Slackware x86_64 -current: ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/x/xorg-server-21.1.20-x86_64-1.txz ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/x/xorg-server-xephyr-21.1.20-x86_64-1.txz ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/x/xorg-server-xnest-21.1.20-x86_64-1.txz ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/x/xorg-server-xvfb-21.1.20-x86_64-1.txz ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/x/xorg-server-xwayland-24.1.9-x86_64-1.txz MD5 signatures: +-------------+ Slackware 15.0 packages: 3c6cf60ad2c1897c707111c2746db541 xorg-server-1.20.14-i586-18_slack15.0.txz 6dd742c1d1fc775bc4eed5d2d0b46180 xorg-server-xephyr-1.20.14-i586-18_slack15.0.txz eb4d9bd11f731357811648b2395c8a35 xorg-server-xnest-1.20.14-i586-18_slack15.0.txz 4ecdb86d226f1989620d35ba26b2dc10 xorg-server-xvfb-1.20.14-i586-18_slack15.0.txz 8927c0245aa078335118b3fdbcbd1324 xorg-server-xwayland-21.1.4-i586-16_slack15.0.txz Slackware x86_64 15.0 packages: dba9e24a379d7708c4d42370f139b611 xorg-server-1.20.14-x86_64-18_slack15.0.txz 9f47c58055c9c9345439ef55f93792f4 xorg-server-xephyr-1.20.14-x86_64-18_slack15.0.txz 8ae939b55f981da4bd47e92d95ffa385 xorg-server-xnest-1.20.14-x86_64-18_slack15.0.txz aac975997d6766b126bfed17579a3799 xorg-server-xvfb-1.20.14-x86_64-18_slack15.0.txz a7335b5746dcccc84ec1061dfea03f33 xorg-server-xwayland-21.1.4-x86_64-16_slack15.0.txz Slackware -current packages: 5c8f6f43521bfed8f6a592c8ed21e280 x/xorg-server-21.1.20-i686-1.txz e625c0da6a33d84d2c7de75f7e79f5ae x/xorg-server-xephyr-21.1.20-i686-1.txz cd34a6f736e045e763aa2347a4a28d13 x/xorg-server-xnest-21.1.20-i686-1.txz 58f905f8a8a41e3be0b9e90955a5027f x/xorg-server-xvfb-21.1.20-i686-1.txz 394e96bdfa6d55afe3459a38de81ffe9 x/xorg-server-xwayland-24.1.9-i686-1.txz Slackware x86_64 -current packages: cd0a996ecab7cd0d0cc340324f260cb3 x/xorg-server-21.1.20-x86_64-1.txz 2ef509cfa80a02ac977eedf495a2a23e x/xorg-server-xephyr-21.1.20-x86_64-1.txz babe19f4898ad6a53f6eb52005aa0934 x/xorg-server-xnest-21.1.20-x86_64-1.txz 136eafbc4115bff5aa50eec6d5fb6b51 x/xorg-server-xvfb-21.1.20-x86_64-1.txz 2da4278a7b0d51a18f8eac670494b7b1 x/xorg-server-xwayland-24.1.9-x86_64-1.txz Installation instructions: +------------------------+ Upgrade the packages as root: # upgradepkg xorg-server-*.txz +-----+ . New xorg-server packages for Slackware 15.0 address critical security issues and vulnerabilities. Update advised.. xorg-server security patch, Slackware update, use-after-free exploit, value overflow fix. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Oct 29, 2025 Important Slackware
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here