CVE-2025-49176
X.Org xwayland, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION
A flaw was found in the Big Requests extension. The request length is multiplied by 4 before checking against the maximum allowed size, potentially causing an integer overflow and bypassing the size check.
- CVSS
- 7.3
- EPSS
- 0.33% 25.3% percentile
- CISA KEV
- Not listed
- Published
- 2025.06.18