CLSA-2025-1756409662

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1756409662.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2025-1756409662
Upstream
Published
2025-08-28T19:34:26Z
Modified
2026-06-01T00:33:18.035325665Z
Summary
xorg-x11-server: Fix of 8 CVEs
Details
  • CVE-2025-26594: refuse to free the root cursor and keep its ref
  • CVE-2025-26595: fix buffer overflow in XkbVModMaskText()
  • CVE-2025-26596: xkb: fix computation of XkbSizeKeySyms
  • CVE-2025-26597: xkb: fix buffer overflow in XkbChangeTypesOfKey()
  • CVE-2025-26598: Xi: Fix barrier device search
  • CVE-2025-26599: always initialize the border clip in compAllocPixmap()
  • CVE-2025-26600: dix: Dequeue pending events on frozen device on removal
  • CVE-2025-26601: postpone actual changes in SyncChangeAlarmAttributes()
References

Affected packages

TuxCare:CentOS:7
xorg-x11-server-Xdmx

Package

Name
xorg-x11-server-Xdmx
Purl
pkg:rpm/tuxcare/xorg-x11-server-Xdmx?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.20.4-99.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1756409662.json"
xorg-x11-server-Xephyr

Package

Name
xorg-x11-server-Xephyr
Purl
pkg:rpm/tuxcare/xorg-x11-server-Xephyr?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.20.4-99.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1756409662.json"
xorg-x11-server-Xnest

Package

Name
xorg-x11-server-Xnest
Purl
pkg:rpm/tuxcare/xorg-x11-server-Xnest?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.20.4-99.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1756409662.json"
xorg-x11-server-Xorg

Package

Name
xorg-x11-server-Xorg
Purl
pkg:rpm/tuxcare/xorg-x11-server-Xorg?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.20.4-99.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1756409662.json"
xorg-x11-server-Xvfb

Package

Name
xorg-x11-server-Xvfb
Purl
pkg:rpm/tuxcare/xorg-x11-server-Xvfb?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.20.4-99.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1756409662.json"
xorg-x11-server-Xwayland

Package

Name
xorg-x11-server-Xwayland
Purl
pkg:rpm/tuxcare/xorg-x11-server-Xwayland?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.20.4-99.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1756409662.json"
xorg-x11-server-common

Package

Name
xorg-x11-server-common
Purl
pkg:rpm/tuxcare/xorg-x11-server-common?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.20.4-99.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1756409662.json"
xorg-x11-server-devel

Package

Name
xorg-x11-server-devel
Purl
pkg:rpm/tuxcare/xorg-x11-server-devel?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.20.4-99.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1756409662.json"
xorg-x11-server-source

Package

Name
xorg-x11-server-source
Purl
pkg:rpm/tuxcare/xorg-x11-server-source?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.20.4-99.el7_9.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2025-1756409662.json"