ping in iputils before 20250602 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication.
References
| Link | Resource |
|---|---|
| https://bugzilla.suse.com/show_bug.cgi?id=1242300 | Issue Tracking |
| https://github.com/Zephkek/ping-rtt-overflow/ | Exploit |
| https://github.com/iputils/iputils/issues/584 | Exploit Issue Tracking Patch |
| https://github.com/iputils/iputils/pull/585 | Exploit Issue Tracking Patch |
| https://github.com/iputils/iputils/releases/tag/20250602 | |
| https://github.com/Zephkek/ping-rtt-overflow/ | Exploit |
Configurations
History
23 Jul 2025, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| Summary | (en) ping in iputils before 20250602 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication. |
13 Jun 2025, 18:21
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-05-05 14:15
Updated : 2025-07-23 15:15
NVD link : CVE-2025-47268
Mitre link : CVE-2025-47268
CVE.ORG link : CVE-2025-47268
JSON object : View
Products Affected
iputils_project
- iputils
CWE
CWE-190
Integer Overflow or Wraparound
