You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
cve 2025 49176
About this tag
CVE-2025-49176 is a security vulnerability in the X.Org Big Requests extension, part of the X11 window system. The flaw involves a subtle integer overflow that can be triggered by specially crafted request lengths. An attacker with appropriate access can bypass size checks, leading to out-of-bounds memory access, crashes, and in some configurations, memory corruption. Distributions and vendors have released patches to address this issue. Operators are advised to prioritize updates and implement network hardening to reduce exposure. This vulnerability affects systems running the X.Org server with the Big Requests extension enabled.
The X.Org Big Requests extension contains a subtle integer‑overflow bug that can be triggered by specially crafted request lengths, allowing an attacker with the right access to bypass the size check, cause out‑of‑‑bounds memory access and crashes, and in some configurations produce memory...