First published: Mon May 05 2025(Updated: )
ping in iputils through 20240905 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
iputils ping | <=20240905 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-47268 has a high severity as it allows a denial of service condition due to an integer overflow.
To fix CVE-2025-47268, upgrade the iputils ping software to a version newer than 20240905.
CVE-2025-47268 affects iputils ping versions up to and including 20240905.
CVE-2025-47268 enables a denial of service attack through crafted ICMP Echo Reply packets.
The underlying issue in CVE-2025-47268 is a signed 64-bit integer overflow in timestamp multiplication.