High severity7.3NVD Advisory· Published Oct 30, 2025· Updated Jul 1, 2026
CVE-2025-62231
CVE-2025-62231
Description
A flaw was identified in the X.Org X server’s X Keyboard (Xkb) extension where improper bounds checking in the XkbSetCompatMap() function can cause an unsigned short overflow. If an attacker sends specially crafted input data, the value calculation may overflow, leading to memory corruption or a crash.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
73cpe:2.3:o:redhat:enterprise_linux:10.0:*:*:*:*:*:*:*+ 7 more
- cpe:2.3:o:redhat:enterprise_linux:10.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_aus:8.2:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_aus:8.4:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_aus:8.6:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_tus:8.6:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_tus:8.8:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_els:6.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:redhat:enterprise_linux_els:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_els:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_eus:8.4:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:redhat:enterprise_linux_eus:8.4:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_eus:9.4:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_update_services_for_sap_solutions:8.6:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:redhat:enterprise_linux_update_services_for_sap_solutions:8.6:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_update_services_for_sap_solutions:8.8:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_update_services_for_sap_solutions:9.0:*:*:*:*:*:*:*
- cpe:2.3:o:redhat:enterprise_linux_update_services_for_sap_solutions:9.2:*:*:*:*:*:*:*
- osv-coords49 versionspkg:rpm/almalinux/tigervncpkg:rpm/almalinux/tigervnc-iconspkg:rpm/almalinux/tigervnc-licensepkg:rpm/almalinux/tigervnc-selinuxpkg:rpm/almalinux/tigervnc-serverpkg:rpm/almalinux/tigervnc-server-minimalpkg:rpm/almalinux/tigervnc-server-modulepkg:rpm/almalinux/xorg-x11-server-Xdmxpkg:rpm/almalinux/xorg-x11-server-Xephyrpkg:rpm/almalinux/xorg-x11-server-Xnestpkg:rpm/almalinux/xorg-x11-server-Xorgpkg:rpm/almalinux/xorg-x11-server-Xvfbpkg:rpm/almalinux/xorg-x11-server-Xwaylandpkg:rpm/almalinux/xorg-x11-server-Xwayland-develpkg:rpm/almalinux/xorg-x11-server-commonpkg:rpm/almalinux/xorg-x11-server-develpkg:rpm/almalinux/xorg-x11-server-sourcepkg:rpm/opensuse/xorg-x11-server&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/xorg-x11-server&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/xorg-x11-server&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/xwayland&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/xwayland&distro=openSUSE%20Leap%2016.0pkg:rpm/opensuse/xwayland&distro=openSUSE%20Tumbleweedpkg:rpm/suse/xorg-x11-server&distro=SUSE%20Enterprise%20Storage%207.1pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP3-LTSSpkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-ESPOSpkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-LTSSpkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP5-ESPOSpkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP5-LTSSpkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP6pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP7pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP6pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP7pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5-LTSSpkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP3-LTSSpkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP4-LTSSpkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP5-LTSSpkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Server%20LTSS%20Extended%20Security%2012%20SP5pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP3pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP4pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP5pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2015%20SP6pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2015%20SP7pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Manager%20Proxy%20LTS%204.3pkg:rpm/suse/xorg-x11-server&distro=SUSE%20Manager%20Server%20LTS%204.3pkg:rpm/suse/xwayland&distro=SUSE%20Linux%20Enterprise%20Server%2016.0pkg:rpm/suse/xwayland&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20applications%2016.0pkg:rpm/suse/xwayland&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2015%20SP6pkg:rpm/suse/xwayland&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2015%20SP7
< 1.14.1-9.el9_6+ 48 more
- (no CPE)range: < 1.14.1-9.el9_6
- (no CPE)range: < 1.14.1-9.el9_6
- (no CPE)range: < 1.14.1-9.el9_6
- (no CPE)range: < 1.14.1-9.el9_6
- (no CPE)range: < 1.14.1-9.el9_6
- (no CPE)range: < 1.14.1-9.el9_6
- (no CPE)range: < 1.14.1-9.el9_6
- (no CPE)range: < 1.20.11-27.el8_10
- (no CPE)range: < 1.20.11-27.el8_10
- (no CPE)range: < 1.20.11-27.el8_10
- (no CPE)range: < 1.20.11-27.el8_10
- (no CPE)range: < 1.20.11-27.el8_10
- (no CPE)range: < 21.1.3-19.el8_10
- (no CPE)range: < 24.1.5-5.el10_0
- (no CPE)range: < 1.20.11-27.el8_10
- (no CPE)range: < 1.20.11-27.el8_10
- (no CPE)range: < 1.20.11-27.el8_10
- (no CPE)range: < 21.1.11-150600.5.20.1
- (no CPE)range: < 21.1.15-160000.3.1
- (no CPE)range: < 21.1.15-7.1
- (no CPE)range: < 24.1.1-150600.5.18.1
- (no CPE)range: < 24.1.6-160000.3.1
- (no CPE)range: < 24.1.8-4.1
- (no CPE)range: < 1.20.3-150200.22.5.118.1
- (no CPE)range: < 1.20.3-150200.22.5.118.1
- (no CPE)range: < 1.20.3-150400.38.63.1
- (no CPE)range: < 1.20.3-150400.38.63.1
- (no CPE)range: < 21.1.4-150500.7.43.1
- (no CPE)range: < 21.1.4-150500.7.43.1
- (no CPE)range: < 21.1.11-150600.5.20.1
- (no CPE)range: < 21.1.15-150700.5.11.1
- (no CPE)range: < 21.1.11-150600.5.20.1
- (no CPE)range: < 21.1.15-150700.5.11.1
- (no CPE)range: < 1.19.6-10.94.1
- (no CPE)range: < 1.20.3-150200.22.5.118.1
- (no CPE)range: < 1.20.3-150400.38.63.1
- (no CPE)range: < 21.1.4-150500.7.43.1
- (no CPE)range: < 1.19.6-10.94.1
- (no CPE)range: < 1.20.3-150200.22.5.118.1
- (no CPE)range: < 1.20.3-150400.38.63.1
- (no CPE)range: < 21.1.4-150500.7.43.1
- (no CPE)range: < 1.20.3-150200.22.5.118.1
- (no CPE)range: < 1.20.3-150200.22.5.118.1
- (no CPE)range: < 1.20.3-150400.38.63.1
- (no CPE)range: < 1.20.3-150400.38.63.1
- (no CPE)range: < 24.1.6-160000.3.1
- (no CPE)range: < 24.1.6-160000.3.1
- (no CPE)range: < 24.1.1-150600.5.18.1
- (no CPE)range: < 24.1.5-150700.3.9.1
Patches
Vulnerability mechanics
References
38- www.openwall.com/lists/oss-security/2025/10/28/7nvdMailing ListPatch
- access.redhat.com/errata/RHSA-2025:19432nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:19433nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:19434nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:19435nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:19489nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:19623nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:19909nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:20958nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:20960nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:20961nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:21035nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22040nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22041nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22051nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22055nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22056nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22077nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22096nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22164nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22167nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22364nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22365nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22426nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22427nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22667nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22729nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22742nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2025:22753nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2026:0031nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2026:0033nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2026:0034nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2026:0035nvdThird Party Advisory
- access.redhat.com/errata/RHSA-2026:0036nvdThird Party Advisory
- access.redhat.com/security/cve/CVE-2025-62231nvdThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
- lists.debian.org/debian-lts-announce/2025/10/msg00033.htmlnvdMailing ListThird Party Advisory
- lists.x.org/archives/xorg-announce/2025-October/003635.htmlnvdMailing ListVendor Advisory
News mentions
0No linked articles in our index yet.