[CLSA-2026:1778110872] xorg-x11-server-Xwayland: Fix of 3 CVEs
Type:
security
Severity:
Moderate
Release date:
2026-05-06 23:41:17 UTC
Description:
- CVE-2024-0408: fix XSELinux crash by calling XACE hooks when creating GLX buffers - CVE-2025-49175: fix out-of-bounds read in animated cursor creation when client provides zero cursors - CVE-2025-49178: fix possible client request hang caused by leftover bytes-to-ignore when sharing input buffer
Updated packages:
  • xorg-x11-server-Xwayland-21.1.3-7.el9.tuxcare.els15.i686.rpm
    sha:132407eac8a853722c5141bb946edd4ca5d8e28accbbb8cbdfde36cf7459c2a2
  • xorg-x11-server-Xwayland-21.1.3-7.el9.tuxcare.els15.x86_64.rpm
    sha:4d8157fcd0189f025099b4b8784ecafc5b4b06d710bd859d14db3398879a6e78
  • xorg-x11-server-Xwayland-devel-21.1.3-7.el9.tuxcare.els15.i686.rpm
    sha:f8e7075e35edbe4b54837d3592a99d202ae4e4d2a50030b3a6a637dd7b152f45
  • xorg-x11-server-Xwayland-devel-21.1.3-7.el9.tuxcare.els15.x86_64.rpm
    sha:997a8632df1a14d4d592d742068b2479d9f25f039dffa6506534069a8e4253a0
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.