Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-48964

Опубликовано: 22 июл. 2025
Источник: ubuntu
Приоритет: low
CVSS3: 6.5

Описание

ping in iputils before 20250602 allows a denial of service (application error in adaptive ping mode or incorrect data collection) via a crafted ICMP Echo Reply packet, because a zero timestamp can lead to large intermediate values that have an integer overflow when squared during statistics calculations. NOTE: this issue exists because of an incomplete fix for CVE-2025-47268 (that fix was only about timestamp calculations, and it did not account for a specific scenario where the original timestamp in the ICMP payload is zero).

РелизСтатусПримечание
devel

pending

3:20240905-3ubuntu2
esm-infra-legacy/trusty

needs-triage

esm-infra/bionic

needs-triage

esm-infra/focal

needs-triage

esm-infra/xenial

needs-triage

jammy

released

3:20211215-1ubuntu0.1
noble

released

3:20240117-1ubuntu0.1
plucky

released

3:20240905-1ubuntu1.1
upstream

not-affected

debian: negligible

Показывать по

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
26 дней назад

ping in iputils before 20250602 allows a denial of service (application error in adaptive ping mode or incorrect data collection) via a crafted ICMP Echo Reply packet, because a zero timestamp can lead to large intermediate values that have an integer overflow when squared during statistics calculations. NOTE: this issue exists because of an incomplete fix for CVE-2025-47268 (that fix was only about timestamp calculations, and it did not account for a specific scenario where the original timestamp in the ICMP payload is zero).

CVSS3: 6.5
debian
26 дней назад

ping in iputils before 20250602 allows a denial of service (applicatio ...

suse-cvrf
27 дней назад

Security update for iputils

suse-cvrf
27 дней назад

Security update for iputils

suse-cvrf
27 дней назад

Security update for iputils

6.5 Medium

CVSS3