Description
ping in iputils before 20250602 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication.
Problem types
CWE-190 Integer Overflow or Wraparound
Product status
Any version before 20250602
References
github.com/Zephkek/ping-rtt-overflow/
github.com/iputils/iputils/issues/584
github.com/Zephkek/ping-rtt-overflow/
bugzilla.suse.com/show_bug.cgi?id=1242300
github.com/iputils/iputils/pull/585
github.com/iputils/iputils/releases/tag/20250602
github.com/...ommit/070cfacd7348386173231fb16fad4983d4e6ae40