USN-7670-1: iputils vulnerability
USN-7670-1: iputils vulnerability
- Publication date: 24 July 2025
- Overview: iputils could be made to consume resources and crash if it received specially crafted network traffic.
Packages
- iputils - Small utilities for Linux Networking
Details
It was discovered that the iputils ping utility incorrectly handled
certain ICMP Echo Reply packets. A remote attacker could possibly use this
issue to cause iputils to consume resources, leading to a denial of
service.
Update instructions:
The problem can be corrected by updating your system to the following package versions:
- 25.04 plucky: iputils-ping – 3:20240905-1ubuntu1.1
- 24.04 noble: iputils-ping – 3:20240117-1ubuntu0.1
- 22.04 jammy: iputils-ping – 3:20211215-1ubuntu0.1

