ping in iputils before 20250602 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication.
References
Link | Resource |
---|---|
https://bugzilla.suse.com/show_bug.cgi?id=1242300 | Issue Tracking |
https://github.com/Zephkek/ping-rtt-overflow/ | Exploit |
https://github.com/iputils/iputils/issues/584 | Exploit Issue Tracking Patch |
https://github.com/iputils/iputils/pull/585 | Exploit Issue Tracking Patch |
https://github.com/iputils/iputils/releases/tag/20250602 | |
https://github.com/Zephkek/ping-rtt-overflow/ | Exploit |
Configurations
History
23 Jul 2025, 15:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Summary | (en) ping in iputils before 20250602 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication. |
13 Jun 2025, 18:21
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-05-05 14:15
Updated : 2025-07-23 15:15
NVD link : CVE-2025-47268
Mitre link : CVE-2025-47268
CVE.ORG link : CVE-2025-47268
JSON object : View
Products Affected
iputils_project
- iputils
CWE
CWE-190
Integer Overflow or Wraparound