CVE-2025-47268

Name
CVE-2025-47268
Description
ping in iputils through 20240905 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
cve@mitre.org https://github.com/Zephkek/ping-rtt-overflow/
cve@mitre.org https://github.com/iputils/iputils/issues/584
cve@mitre.org https://bugzilla.suse.com/show_bug.cgi?id=1242300
cve@mitre.org https://github.com/iputils/iputils/pull/585

Match rules

CPE URI Source package Min version Max version
iputils >= 0 <= 20240905
cpe:2.3:a:iputils_project:iputils:20240905:*:*:*:*:*:*:* iputils == None == 20240905

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
iputils edge-main 20240905-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable