关键漏洞信息 漏洞概述 公告编号: RHSA-2025:10347 发布日期: 2025-07-07 更新日期: 2025-07-07 类型/严重性: 安全公告 - 重要 影响的产品 Red Hat Enterprise Linux Server - AUS 9.2 x86_64 Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions 9.2 ppc64le Red Hat Enterprise Linux for x86_64 - 4 years of updates 9.2 x86_64 Red Hat Enterprise Linux for ARM 64 - 4 years of updates 9.2 aarch64 Red Hat Enterprise Linux for IBM z Systems - 4 years of updates 9.2 s390x 漏洞详情 CVE编号: - CVE-2025-49175 - CVE-2025-49176 - CVE-2025-49178 - CVE-2025-49179 - CVE-2025-49180 修复的漏洞: - Out-of-Bounds Read in X Rendering Extension Animated Cursors (CVE-2025-49175) - Integer Overflow in Big Requests Extension (CVE-2025-49176) - Unprocessed Client Request Due to Bytes to Ignore (CVE-2025-49178) - Integer overflow in X Record extension (CVE-2025-49179) - Integer Overflow in X Resize, Rotate and Reflect (RandR) Extension (CVE-2025-49180) 解决方案 参考链接: https://access.redhat.com/articles/11258 参考资料 Red Hat 安全更新分类