CVE-2025-62229

high

Description

A flaw was found in the X.Org X server and Xwayland when processing X11 Present extension notifications. Improper error handling during notification creation can leave dangling pointers that lead to a use-after-free condition. This can cause memory corruption or a crash, potentially allowing an attacker to execute arbitrary code or cause a denial of service.

References

https://access.redhat.com/errata/RHSA-2026:0036

https://access.redhat.com/errata/RHSA-2026:0035

https://access.redhat.com/errata/RHSA-2026:0034

https://access.redhat.com/errata/RHSA-2026:0033

https://access.redhat.com/errata/RHSA-2026:0031

https://access.redhat.com/errata/RHSA-2025:22753

https://access.redhat.com/errata/RHSA-2025:22742

https://access.redhat.com/errata/RHSA-2025:22729

https://access.redhat.com/errata/RHSA-2025:22667

https://access.redhat.com/errata/RHSA-2025:22427

https://access.redhat.com/errata/RHSA-2025:22426

https://access.redhat.com/errata/RHSA-2025:22365

https://access.redhat.com/errata/RHSA-2025:22364

https://access.redhat.com/errata/RHSA-2025:22167

https://access.redhat.com/errata/RHSA-2025:22164

https://access.redhat.com/errata/RHSA-2025:22096

https://access.redhat.com/errata/RHSA-2025:22077

https://access.redhat.com/errata/RHSA-2025:22056

https://access.redhat.com/errata/RHSA-2025:22055

https://access.redhat.com/errata/RHSA-2025:22051

https://access.redhat.com/errata/RHSA-2025:22041

https://access.redhat.com/errata/RHSA-2025:22040

https://access.redhat.com/errata/RHSA-2025:21035

https://access.redhat.com/errata/RHSA-2025:20961

https://access.redhat.com/errata/RHSA-2025:20960

https://access.redhat.com/errata/RHSA-2025:20958

https://access.redhat.com/errata/RHSA-2025:19909

https://access.redhat.com/errata/RHSA-2025:19623

https://access.redhat.com/errata/RHSA-2025:19489

https://access.redhat.com/errata/RHSA-2025:19435

https://access.redhat.com/errata/RHSA-2025:19434

https://access.redhat.com/errata/RHSA-2025:19433

https://access.redhat.com/errata/RHSA-2025:19432

Details

Source: Mitre, NVD

Published: 2025-10-30

Updated: 2026-01-05

Risk Information

CVSS v2

Base Score: 7.1

Vector: CVSS2#AV:N/AC:H/Au:S/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 7.3

Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:H/A:H

Severity: High

EPSS

EPSS: 0.00013