CVE-2025-26601 Details
Description
A use-after-free flaw was found in X.Org and Xwayland. When changing an alarm, the values of the change mask are evaluated one after the other, changing the trigger values as requested, and eventually, SyncInitTrigger() is called. If one of the changes triggers an error, the function will return early, not adding the new sync object, possibly causing a use-after-free when the alarm eventually triggers.
A use-after-free vulnerability has been identified in X.Org and Xwayland. This issue arises when an alarm is changed; the change mask values are processed sequentially, updating trigger values as needed. Eventually, the SyncInitTrigger() function is called. If an error occurs during this process, the function exits prematurely without adding the new synchronization object, potentially leading to a use-after-free condition when the alarm is triggered.
Users can apply the available updates for their Red Hat Enterprise Linux version. Instructions for applying these updates can be found on the Red Hat Customer Portal.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Feb 25, 2025References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-416 | Use After Free | [email protected] |
| CWE-416 | Use After Free | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| tigervnc tigervnc | All versions |
CPE
Remediation
| |
| x.org x server | < 21.1.16 |
CPE
Remediation
| |
| x.org xwayland | < 24.1.6 |
CPE
Remediation
| |
| redhat enterprise linux | 7.0 8.0 9.0 |
CPE
Remediation
| |
Change History
17 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 29, 2026 | CVE Modified | [email protected] |
| Jun 25, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Apr 6, 2026 | CVE Modified | [email protected] |
| Nov 3, 2025 | CVE Modified | CVE |
| May 16, 2025 | CVE Modified | CVE |
| May 13, 2025 | CVE Modified | [email protected] |
| May 13, 2025 | CVE Modified | [email protected] |
| May 8, 2025 | Modified Analysis | [email protected] |
| Apr 10, 2025 | Modified Analysis | [email protected] |
| Mar 17, 2025 | CVE Modified | [email protected] |
| Mar 17, 2025 | CVE Modified | [email protected] |
| Mar 17, 2025 | CVE Modified | [email protected] |
| Mar 10, 2025 | CVE Modified | [email protected] |
| Mar 4, 2025 | Initial Analysis | [email protected] |
| Feb 25, 2025 | New CVE Received | [email protected] |