CVE-2025-49178

MEDIUM

X Server - DoS

Title source: llm
STIX 2.1

Description

A flaw was found in the X server's request handling. Non-zero 'bytes to ignore' in a client's request can cause the server to skip processing another client's request, potentially leading to a denial of service.

Scores

CVSS v3 5.5
EPSS 0.0019
EPSS Percentile 40.7%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-667
Status published
Products (47)
Red Hat/Red Hat Enterprise Linux 10 0:24.1.5-4.el10_0
Red Hat/Red Hat Enterprise Linux 6
Red Hat/Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION 0:1.1.0-25.el6_10.1
Red Hat/Red Hat Enterprise Linux 7 Extended Lifecycle Support 0:1.20.4-32.el7_9
Red Hat/Red Hat Enterprise Linux 7 Extended Lifecycle Support 0:1.8.0-36.el7_9.2
Red Hat/Red Hat Enterprise Linux 7.7 Advanced Update Support 0:1.8.0-17.el7_7.1
Red Hat/Red Hat Enterprise Linux 8 0:1.15.0-7.el8_10
Red Hat/Red Hat Enterprise Linux 8 0:1.20.11-26.el8_10
Red Hat/Red Hat Enterprise Linux 8 0:21.1.3-18.el8_10
Red Hat/Red Hat Enterprise Linux 8.2 Advanced Update Support 0:1.20.6-4.el8_2
... and 37 more
Published Jun 17, 2025
Tracked Since Feb 18, 2026