Nixpkgs Security Tracker

Login with GitHub

Details of issue NIXPKGS-2026-0089

NIXPKGS-2026-0089
published on 27 Jan 2026
updated 3 weeks, 4 days ago by @LeSuisse Activity log
  • Created automatic suggestion
  • @LeSuisse removed package unixtools.ping
  • @LeSuisse accepted
  • @LeSuisse published on GitHub
ping in iputils through 20240905 allows a denial of service …

ping in iputils through 20240905 allows a denial of service (application error or incorrect data collection) via a crafted ICMP Echo Reply packet, because of a signed 64-bit integer overflow in timestamp multiplication.

Affected products

iputils
  • =<20240905
  • <20250602

Matching in nixpkgs

Package maintainers

Upstream patch/advisory: https://github.com/iputils/iputils/commit/070cfacd7348386173231fb16fad4983d4e6ae40
Release notes: https://github.com/iputils/iputils/releases/tag/20250602