Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-47268

Опубликовано: 05 мая 2025
Источник: debian
EPSS Низкий

Описание

ping in iputils before 20250602 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
iputilsfixed3:20250605-1package

Примечания

  • https://github.com/iputils/iputils/issues/584

  • https://github.com/Zephkek/ping-rtt-overflow/

  • Fixed by: https://github.com/iputils/iputils/commit/070cfacd7348386173231fb16fad4983d4e6ae40

  • When fixing this issue make sure to address the fix completely an not open

  • up CVE-2025-48964.

  • Followup fix: https://github.com/iputils/iputils/commit/afa36390394a6e0cceba03b52b59b6d41710608c

  • Negligible security impact

EPSS

Процентиль: 20%
0.00064
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
3 месяца назад

ping in iputils before 20250602 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication.

CVSS3: 6.5
redhat
3 месяца назад

ping in iputils before 20250602 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication.

CVSS3: 6.5
nvd
3 месяца назад

ping in iputils before 20250602 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication.

suse-cvrf
2 месяца назад

Security update for iputils

suse-cvrf
2 месяца назад

Security update for iputils

EPSS

Процентиль: 20%
0.00064
Низкий