CVE-2025-62231 is a vulnerability in the X.Org Server's X Keyboard (Xkb) extension. It allows a specially crafted X protocol request to trigger an arithmetic wrap or unsigned-short overflow in XkbSetCompatMap, leading to memory corruption or crashes. This can fully deny graphical services and, under some vendor assessments, may be weaponized for privilege escalation. The bug affects the X.Org X server and its Xwayland builds. Users should apply security patches from their distribution or vendor to mitigate the risk. This tag covers discussions and analysis of the vulnerability, its impact, and remediation steps.
-
A newly disclosed vulnerability in the X.Org Server’s X Keyboard (Xkb) extension — tracked as CVE‑2025‑62231 — allows a specially crafted X protocol request to trigger an arithmetic wrap/unsigned‑short overflow in XkbSetCompatMap, producing memory corruption or crashes that can fully deny...