* bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: . # Security update for xwayland Announcement ID: SUSE-SU-2025:21149-1 Release Date: 2025-11-27T10:11:16Z Rating: important References: * bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: * CVE-2025-62229 * CVE-2025-62230 * CVE-2025-62231 CVSS scores: * CVE-2025-62229 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62229 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62229 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H * CVE-2025-62230 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62230 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62230 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H * CVE-2025-62231 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62231 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62231 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H Affected Products: * SUSE Linux Enterprise Server 16.0 * SUSE Linux Enterprise Server for SAP Applications 16.0 An update that solves three vulnerabilities can now be installed. ## Description: This update for xwayland fixes the following issues: * CVE-2025-62229: Fixed use-after-free in XPresentNotify structures creation (bsc#1251958). * CVE-2025-62230: Fixed use-after-free in Xkb client resource removal (bsc#1251959). * CVE-2025-62231: Fixed value overflow in Xkb extension XkbSetCompatMap() (bsc#1251960). ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise Server 16.0 zypper in -t patch SUSE-SLES-16.0-65=1 * SUSE Linux Enterprise Server for SAP Applications 16.0 zypper in-t patch SUSE-SLES-16.0-65=1 ## Package List: * SUSE Linux Enterprise Server 16.0 (aarch64 ppc64le s390x x86_64) * xwayland-devel-24.1.6-160000.3.1 * xwayland-debugsource-24.1.6-160000.3.1 * xwayland-24.1.6-160000.3.1 * xwayland-debuginfo-24.1.6-160000.3.1 * SUSE Linux Enterprise Server for SAP Applications 16.0 (ppc64le x86_64) * xwayland-devel-24.1.6-160000.3.1 * xwayland-debugsource-24.1.6-160000.3.1 * xwayland-24.1.6-160000.3.1 * xwayland-debuginfo-24.1.6-160000.3.1 ## References: * https://www.suse.com/security/cve/CVE-2025-62229.html * https://www.suse.com/security/cve/CVE-2025-62230.html * https://www.suse.com/security/cve/CVE-2025-62231.html * https://bugzilla.suse.com/show_bug.cgi?id=1251958 * https://bugzilla.suse.com/show_bug.cgi?id=1251959 * https://bugzilla.suse.com/show_bug.cgi?id=1251960 . Critical security update for xwayland on SUSE affects server operations and addresses multiple vulnerabilities.. xwayland update, SUSE security patch, important vulnerabilities, system security fixes. . Severity: Important. LinuxSecurity.com Team
An update that solves three vulnerabilities can now be installed.. # Security update for xwayland Announcement ID: SUSE-SU-2025:3863-1 Release Date: 2025-10-30T13:39:37Z Rating: important References: * bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: * CVE-2025-62229 * CVE-2025-62230 * CVE-2025-62231 CVSS scores: * CVE-2025-62229 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62229 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62229 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H * CVE-2025-62230 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62230 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62230 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H * CVE-2025-62231 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62231 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62231 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H Affected Products: * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Workstation Extension 15 SP6 An update that solves three vulnerabilities can now be installed. ## Description: This update for xwayland fixes the following issues: * Fixed use-after-free in XPresentNotify structures creation (CVE-2025-62229, bsc#1251958) * Fixed use-after-free in Xkb client resource removal (CVE-2025-62230, bsc#1251959) * Fixed value overflow in Xkb extension XkbSetCompatMap() (CVE-2025-62231, bsc#1251960) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in -t patch SUSE-2025-3863=1 openSUSE-SLE-15.6-2025-3863=1 * SUSE Linux Enterprise Workstation Extension 15 SP6 zypper in -t patch SUSE-SLE-Product-WE-15-SP6-2025-3863=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * xwayland-devel-24.1.1-150600.5.18.1 * xwayland-debuginfo-24.1.1-150600.5.18.1 * xwayland-debugsource-24.1.1-150600.5.18.1 * xwayland-24.1.1-150600.5.18.1 * SUSE Linux Enterprise Workstation Extension 15 SP6 (x86_64) * xwayland-debuginfo-24.1.1-150600.5.18.1 * xwayland-debugsource-24.1.1-150600.5.18.1 * xwayland-24.1.1-150600.5.18.1 ## References: * https://www.suse.com/security/cve/CVE-2025-62229.html * https://www.suse.com/security/cve/CVE-2025-62230.html * https://www.suse.com/security/cve/CVE-2025-62231.html * https://bugzilla.suse.com/show_bug.cgi?id=1251958 * https://bugzilla.suse.com/show_bug.cgi?id=1251959 * https://bugzilla.suse.com/show_bug.cgi?id=1251960 . This update addresses three important issues in xwayland affect openSUSE systems, including use-after-free errors.. openSUSE update,xwayland security,security patch,SUSE vulnerabilities. . Severity: Important. LinuxSecurity.com Team
* bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: . # Security update for xwayland Announcement ID: SUSE-SU-2025:3863-1 Release Date: 2025-10-30T13:39:37Z Rating: important References: * bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: * CVE-2025-62229 * CVE-2025-62230 * CVE-2025-62231 CVSS scores: * CVE-2025-62229 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62229 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62229 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H * CVE-2025-62230 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62230 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62230 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H * CVE-2025-62231 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62231 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62231 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H Affected Products: * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Workstation Extension 15 SP6 An update that solves three vulnerabilities can now be installed. ## Description: This update for xwayland fixes the following issues: * Fixed use-after-free in XPresentNotify structures creation (CVE-2025-62229, bsc#1251958) * Fixed use-after-free in Xkb client resource removal (CVE-2025-62230, bsc#1251959) * Fixed value overflow in Xkb extension XkbSetCompatMap() (CVE-2025-62231, bsc#1251960) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * openSUSE Leap 15.6 zypper in-t patch SUSE-2025-3863=1 openSUSE-SLE-15.6-2025-3863=1 * SUSE Linux Enterprise Workstation Extension 15 SP6 zypper in -t patch SUSE-SLE-Product-WE-15-SP6-2025-3863=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * xwayland-devel-24.1.1-150600.5.18.1 * xwayland-debuginfo-24.1.1-150600.5.18.1 * xwayland-debugsource-24.1.1-150600.5.18.1 * xwayland-24.1.1-150600.5.18.1 * SUSE Linux Enterprise Workstation Extension 15 SP6 (x86_64) * xwayland-debuginfo-24.1.1-150600.5.18.1 * xwayland-debugsource-24.1.1-150600.5.18.1 * xwayland-24.1.1-150600.5.18.1 ## References: * https://www.suse.com/security/cve/CVE-2025-62229.html * https://www.suse.com/security/cve/CVE-2025-62230.html * https://www.suse.com/security/cve/CVE-2025-62231.html * https://bugzilla.suse.com/show_bug.cgi?id=1251958 * https://bugzilla.suse.com/show_bug.cgi?id=1251959 * https://bugzilla.suse.com/show_bug.cgi?id=1251960 . SUSE updates xwayland to resolve important vulnerabilities including use-after-free and value overflow issues. Install now.. xwayland security fix, SUSE updates, important vulnerabilities, Linux security advisory. . Severity: Important. LinuxSecurity.com Team
* bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: . # Security update for xorg-x11-server Announcement ID: SUSE-SU-2025:3864-1 Release Date: 2025-10-30T13:40:02Z Rating: important References: * bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: * CVE-2025-62229 * CVE-2025-62230 * CVE-2025-62231 CVSS scores: * CVE-2025-62229 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62229 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62229 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H * CVE-2025-62230 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62230 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62230 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H * CVE-2025-62231 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62231 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62231 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H Affected Products: * SUSE Enterprise Storage 7.1 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Desktop 15 SP7 * SUSE Linux Enterprise High Performance Computing 15 SP3 * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 * SUSE Linux Enterprise Server 15 SP3 * SUSE Linux Enterprise Server 15 SP3 LTSS * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server 15 SP7 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP7 * SUSE Linux Enterprise Workstation Extension 15 SP6 * SUSE Linux Enterprise Workstation Extension 15 SP7 An update that solves three vulnerabilities can now be installed. ## Description: This update for xorg-x11-server fixes the following issues: * Fixed use-after-free inXPresentNotify structures creation (CVE-2025-62229, bsc#1251958) * Fixed use-after-free in Xkb client resource removal (CVE-2025-62230, bsc#1251959) * Fixed value overflow in Xkb extension XkbSetCompatMap() (CVE-2025-62231, bsc#1251960) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 zypper in -t patch SUSE-SLE-Product-HPC-15-SP3-LTSS-2025-3864=1 * SUSE Linux Enterprise Server 15 SP3 LTSS zypper in -t patch SUSE-SLE-Product-SLES-15-SP3-LTSS-2025-3864=1 * SUSE Linux Enterprise Server for SAP Applications 15 SP3 zypper in -t patch SUSE-SLE-Product-SLES_SAP-15-SP3-2025-3864=1 * SUSE Linux Enterprise Workstation Extension 15 SP6 zypper in -t patch SUSE-SLE-Product-WE-15-SP6-2025-3864=1 * SUSE Linux Enterprise Workstation Extension 15 SP7 zypper in -t patch SUSE-SLE-Product-WE-15-SP7-2025-3864=1 * SUSE Enterprise Storage 7.1 zypper in -t patch SUSE-Storage-7.1-2025-3864=1 ## Package List: * SUSE Linux Enterprise High Performance Computing LTSS 15 SP3 (aarch64 x86_64) * xorg-x11-server-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debugsource-1.20.3-150200.22.5.118.1 * xorg-x11-server-sdk-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-1.20.3-150200.22.5.118.1 * xorg-x11-server-1.20.3-150200.22.5.118.1 * SUSE Linux Enterprise Server 15 SP3 LTSS (aarch64 ppc64le s390x x86_64) * xorg-x11-server-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debugsource-1.20.3-150200.22.5.118.1 * xorg-x11-server-sdk-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-1.20.3-150200.22.5.118.1 * xorg-x11-server-1.20.3-150200.22.5.118.1 * SUSE Linux Enterprise Serverfor SAP Applications 15 SP3 (ppc64le x86_64) * xorg-x11-server-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debugsource-1.20.3-150200.22.5.118.1 * xorg-x11-server-sdk-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-1.20.3-150200.22.5.118.1 * xorg-x11-server-1.20.3-150200.22.5.118.1 * SUSE Linux Enterprise Workstation Extension 15 SP6 (x86_64) * xorg-x11-server-wayland-1.20.3-150200.22.5.118.1 * xorg-x11-server-wayland-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debugsource-1.20.3-150200.22.5.118.1 * SUSE Linux Enterprise Workstation Extension 15 SP7 (x86_64) * xorg-x11-server-wayland-1.20.3-150200.22.5.118.1 * xorg-x11-server-wayland-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debugsource-1.20.3-150200.22.5.118.1 * SUSE Enterprise Storage 7.1 (aarch64 x86_64) * xorg-x11-server-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-debuginfo-1.20.3-150200.22.5.118.1 * xorg-x11-server-debugsource-1.20.3-150200.22.5.118.1 * xorg-x11-server-sdk-1.20.3-150200.22.5.118.1 * xorg-x11-server-extra-1.20.3-150200.22.5.118.1 * xorg-x11-server-1.20.3-150200.22.5.118.1 ## References: * https://www.suse.com/security/cve/CVE-2025-62229.html * https://www.suse.com/security/cve/CVE-2025-62230.html * https://www.suse.com/security/cve/CVE-2025-62231.html * https://bugzilla.suse.com/show_bug.cgi?id=1251958 * https://bugzilla.suse.com/show_bug.cgi?id=1251959 * https://bugzilla.suse.com/show_bug.cgi?id=1251960 . Critical update for SUSE xorg-x11-server addressing use-after-free and value overflow issues with important severity.. SUSE Security Update, xorg-x11-server Fix, Important Update, Use-After-Free, Value Overflow. . Severity: Important. LinuxSecurity.com Team
An update that solves three vulnerabilities can now be installed.. # Security update for xorg-x11-server Announcement ID: SUSE-SU-2025:3872-1 Release Date: 2025-10-30T15:09:57Z Rating: important References: * bsc#1251958 * bsc#1251959 * bsc#1251960 Cross-References: * CVE-2025-62229 * CVE-2025-62230 * CVE-2025-62231 CVSS scores: * CVE-2025-62229 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62229 ( SUSE ): 7.5 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62229 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H * CVE-2025-62230 ( SUSE ): 7.7 CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62230 ( SUSE ): 8.1 CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62230 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H * CVE-2025-62231 ( SUSE ): 8.7 CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N * CVE-2025-62231 ( SUSE ): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H * CVE-2025-62231 ( NVD ): 7.3 CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:H Affected Products: * Basesystem Module 15-SP6 * Development Tools Module 15-SP6 * openSUSE Leap 15.6 * SUSE Linux Enterprise Desktop 15 SP6 * SUSE Linux Enterprise Real Time 15 SP6 * SUSE Linux Enterprise Server 15 SP6 * SUSE Linux Enterprise Server for SAP Applications 15 SP6 An update that solves three vulnerabilities can now be installed. ## Description: This update for xorg-x11-server fixes the following issues: * Fixed use-after-free in XPresentNotify structures creation (CVE-2025-62229, bsc#1251958) * Fixed use-after-free in Xkb client resource removal (CVE-2025-62230, bsc#1251959) * Fixed value overflow in Xkb extension XkbSetCompatMap() (CVE-2025-62231, bsc#1251960) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run thecommand listed for your product: * openSUSE Leap 15.6 zypper in -t patch SUSE-2025-3872=1 openSUSE-SLE-15.6-2025-3872=1 * Basesystem Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP6-2025-3872=1 * Development Tools Module 15-SP6 zypper in -t patch SUSE-SLE-Module-Development-Tools-15-SP6-2025-3872=1 ## Package List: * openSUSE Leap 15.6 (aarch64 ppc64le s390x x86_64 i586) * xorg-x11-server-extra-21.1.11-150600.5.20.1 * xorg-x11-server-extra-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-sdk-21.1.11-150600.5.20.1 * xorg-x11-server-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-Xvfb-21.1.11-150600.5.20.1 * xorg-x11-server-Xvfb-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-source-21.1.11-150600.5.20.1 * xorg-x11-server-debugsource-21.1.11-150600.5.20.1 * xorg-x11-server-21.1.11-150600.5.20.1 * Basesystem Module 15-SP6 (aarch64 ppc64le s390x x86_64) * xorg-x11-server-extra-21.1.11-150600.5.20.1 * xorg-x11-server-extra-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-Xvfb-21.1.11-150600.5.20.1 * xorg-x11-server-Xvfb-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-debugsource-21.1.11-150600.5.20.1 * xorg-x11-server-21.1.11-150600.5.20.1 * Development Tools Module 15-SP6 (aarch64 ppc64le s390x x86_64) * xorg-x11-server-debuginfo-21.1.11-150600.5.20.1 * xorg-x11-server-sdk-21.1.11-150600.5.20.1 * xorg-x11-server-debugsource-21.1.11-150600.5.20.1 ## References: * https://www.suse.com/security/cve/CVE-2025-62229.html * https://www.suse.com/security/cve/CVE-2025-62230.html * https://www.suse.com/security/cve/CVE-2025-62231.html * https://bugzilla.suse.com/show_bug.cgi?id=1251958 * https://bugzilla.suse.com/show_bug.cgi?id=1251959 * https://bugzilla.suse.com/show_bug.cgi?id=1251960 . An important security update for xorg-x11-server resolves three vulnerabilities, crucial for openSUSE. Stay secure!. xorg-x11-serverimportant vulnerabilities openSUSE patch. . Severity: Important. LinuxSecurity.com Team
New xorg-server packages are available for Slackware 15.0 and -current to fix security issues. . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] xorg-server (SSA:2025-302-01) New xorg-server packages are available for Slackware 15.0 and -current to fix security issues. Here are the details from the Slackware 15.0 ChangeLog: +--------------------------+ patches/packages/xorg-server-1.20.14-i586-18_slack15.0.txz: Rebuilt. This update fixes security issues: Use-after-free in XPresentNotify structures creation. Use-after-free in Xkb client resource removal. Value overflow in Xkb extension XkbSetCompatMap(). These issues were found by Jan-Niklas Sohn working with Trend Micro Zero Day Initiative. For more information, see: https://lists.x.org/archives/xorg-announce/2025-October/003635.html https://www.cve.org/CVERecord?id=CVE-2025-62229 https://www.cve.org/CVERecord?id=CVE-2025-62230 https://www.cve.org/CVERecord?id=CVE-2025-62231 (* Security fix *) patches/packages/xorg-server-xephyr-1.20.14-i586-18_slack15.0.txz: Rebuilt. patches/packages/xorg-server-xnest-1.20.14-i586-18_slack15.0.txz: Rebuilt. patches/packages/xorg-server-xvfb-1.20.14-i586-18_slack15.0.txz: Rebuilt. patches/packages/xorg-server-xwayland-21.1.4-i586-16_slack15.0.txz: Rebuilt. This update fixes security issues: Use-after-free in XPresentNotify structures creation. Use-after-free in Xkb client resource removal. Value overflow in Xkb extension XkbSetCompatMap(). These issues were found by Jan-Niklas Sohn working with Trend Micro Zero Day Initiative. For more information, see: https://lists.x.org/archives/xorg-announce/2025-October/003635.html https://www.cve.org/CVERecord?id=CVE-2025-62229 https://www.cve.org/CVERecord?id=CVE-2025-62230 https://www.cve.org/CVERecord?id=CVE-2025-62231 (* Security fix *) +--------------------------+ Where to find the new packages: +-----------------------------+ Thanks to the friendly folks at the OSU Open SourceLab (http://osuosl.org) for donating FTP and rsync hosting to the Slackware project! :-) Also see the "Get Slack" section on http://www.slackware.com/ for additional mirror sites near you. Updated packages for Slackware 15.0: ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/xorg-server-1.20.14-i586-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/xorg-server-xephyr-1.20.14-i586-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/xorg-server-xnest-1.20.14-i586-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/xorg-server-xvfb-1.20.14-i586-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware-15.0/patches/packages/xorg-server-xwayland-21.1.4-i586-16_slack15.0.txz Updated packages for Slackware x86_64 15.0: ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/xorg-server-1.20.14-x86_64-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/xorg-server-xephyr-1.20.14-x86_64-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/xorg-server-xnest-1.20.14-x86_64-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/xorg-server-xvfb-1.20.14-x86_64-18_slack15.0.txz ftp://ftp.slackware.com/pub/slackware/slackware64-15.0/patches/packages/xorg-server-xwayland-21.1.4-x86_64-16_slack15.0.txz Updated packages for Slackware -current: ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/x/xorg-server-21.1.20-i686-1.txz ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/x/xorg-server-xephyr-21.1.20-i686-1.txz ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/x/xorg-server-xnest-21.1.20-i686-1.txz ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/x/xorg-server-xvfb-21.1.20-i686-1.txz ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/x/xorg-server-xwayland-24.1.9-i686-1.txz Updated packagesfor Slackware x86_64 -current: ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/x/xorg-server-21.1.20-x86_64-1.txz ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/x/xorg-server-xephyr-21.1.20-x86_64-1.txz ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/x/xorg-server-xnest-21.1.20-x86_64-1.txz ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/x/xorg-server-xvfb-21.1.20-x86_64-1.txz ftp://ftp.slackware.com/pub/slackware/slackware64-current/slackware64/x/xorg-server-xwayland-24.1.9-x86_64-1.txz MD5 signatures: +-------------+ Slackware 15.0 packages: 3c6cf60ad2c1897c707111c2746db541 xorg-server-1.20.14-i586-18_slack15.0.txz 6dd742c1d1fc775bc4eed5d2d0b46180 xorg-server-xephyr-1.20.14-i586-18_slack15.0.txz eb4d9bd11f731357811648b2395c8a35 xorg-server-xnest-1.20.14-i586-18_slack15.0.txz 4ecdb86d226f1989620d35ba26b2dc10 xorg-server-xvfb-1.20.14-i586-18_slack15.0.txz 8927c0245aa078335118b3fdbcbd1324 xorg-server-xwayland-21.1.4-i586-16_slack15.0.txz Slackware x86_64 15.0 packages: dba9e24a379d7708c4d42370f139b611 xorg-server-1.20.14-x86_64-18_slack15.0.txz 9f47c58055c9c9345439ef55f93792f4 xorg-server-xephyr-1.20.14-x86_64-18_slack15.0.txz 8ae939b55f981da4bd47e92d95ffa385 xorg-server-xnest-1.20.14-x86_64-18_slack15.0.txz aac975997d6766b126bfed17579a3799 xorg-server-xvfb-1.20.14-x86_64-18_slack15.0.txz a7335b5746dcccc84ec1061dfea03f33 xorg-server-xwayland-21.1.4-x86_64-16_slack15.0.txz Slackware -current packages: 5c8f6f43521bfed8f6a592c8ed21e280 x/xorg-server-21.1.20-i686-1.txz e625c0da6a33d84d2c7de75f7e79f5ae x/xorg-server-xephyr-21.1.20-i686-1.txz cd34a6f736e045e763aa2347a4a28d13 x/xorg-server-xnest-21.1.20-i686-1.txz 58f905f8a8a41e3be0b9e90955a5027f x/xorg-server-xvfb-21.1.20-i686-1.txz 394e96bdfa6d55afe3459a38de81ffe9 x/xorg-server-xwayland-24.1.9-i686-1.txz Slackware x86_64 -current packages: cd0a996ecab7cd0d0cc340324f260cb3 x/xorg-server-21.1.20-x86_64-1.txz 2ef509cfa80a02ac977eedf495a2a23e x/xorg-server-xephyr-21.1.20-x86_64-1.txz babe19f4898ad6a53f6eb52005aa0934 x/xorg-server-xnest-21.1.20-x86_64-1.txz 136eafbc4115bff5aa50eec6d5fb6b51 x/xorg-server-xvfb-21.1.20-x86_64-1.txz 2da4278a7b0d51a18f8eac670494b7b1 x/xorg-server-xwayland-24.1.9-x86_64-1.txz Installation instructions: +------------------------+ Upgrade the packages as root: # upgradepkg xorg-server-*.txz +-----+ . New xorg-server packages for Slackware 15.0 address critical security issues and vulnerabilities. Update advised.. xorg-server security patch, Slackware update, use-after-free exploit, value overflow fix. . Severity: Important. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.