Integer Overflow Vulnerability in X Record Extension of Red Hat Products
CVE-2025-49179

7.3HIGH

What is CVE-2025-49179?

A vulnerability has been identified in the X Record extension, where the RecordSanityCheckRegisterClients function fails to adequately validate the computed request length. This oversight could potentially allow an attacker to bypass integral length checks, leading to unintended behaviors or exploits within the affected systems.

Affected Version(s)

Red Hat Enterprise Linux 10 0:24.1.5-4.el10_0

Red Hat Enterprise Linux 6 Extended Lifecycle Support - EXTENSION 0:1.1.0-25.el6_10.1

Red Hat Enterprise Linux 7 Extended Lifecycle Support 0:1.20.4-32.el7_9

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
Low
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-49179 : Integer Overflow Vulnerability in X Record Extension of Red Hat Products