Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 562
Alerts This Week
Warning Icon 1 562

SUSE: 2025:20442-1 moderate: integer overflow in iputils module

suse
Calendar Grey June 30, 2025
Scroller Suse
Important communication from SUSE regarding enhancements in iputils to mitigate moderate security vulnerabilities, aimed at reducing risk exposure. Essential for maintaining system integrity.
* bsc#1242300 * bsc#1243284 * bsc#1243772 Cross-References:

Summary

## This update for iputils fixes the following issues: * CVE-2025-48964: Fixed integer overflow in ping statistics via zero timestamp (bsc#1243772) * Fix ping on s390x printing invalid ttl (bsc#1243284) * CVE-2025-47268: Fixed integer overflow in RTT calculation can lead to undefined behavior (bsc#1242300) ## Patch Instructions: To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: * SUSE Linux Micro 6.1 zypper in -t patch SUSE-SLE-Micro-6.1-153=1 ## Package List: * SUSE Linux Micro 6.1 (aarch64 ppc64le s390x x86_64) * iputils-debuginfo-20221126-slfo.1.1_2.1 * iputils-20221126-slfo.1.1_2.1 * iputils-debugsource-20221126-slfo.1.1_2.1

References

* bsc#1242300

* bsc#1243284

* bsc#1243772

Cross-

* CVE-2025-47268

* CVE-2025-48964

CVSS scores:

* CVE-2025-47268 ( SUSE ): 5.1

CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N

* CVE-2025-47268 ( SUSE ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L

* CVE-2025-47268 ( NVD ): 6.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L

* CVE-2025-48964 ( SUSE ): 5.3

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:L/VA:L/SC:N/SI:N/SA:N

* CVE-2025-48964 ( SUSE ): 5.4 CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L

Affected Products:

* SUSE Linux Micro 6.1

An update that solves two vulnerabilities and has one fix can now be installed.

##

* https://www.suse.com/security/cve/CVE-2025-47268.html

* https://www.suse.com/security/cve/CVE-2025-48964.html

Announcement ID: SUSE-SU-2025:20442-1
Release Date: 2025-06-20T14:28:11Z
Rating: moderate

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.