Ovidiu Mara discovered a flaw in ping (part of iputils). If a user were to ping a malicious system able to send back a crafted echo reply packet, ping would hang and consume 100% CPU, which could have adverse effect on the usability of the local system.
Created attachment 431280 [details] proposed patch to fix the issue Proposed patch to fix the issue provided by Mandriva.
This issue has been assigned the name CVE-2010-2529.
This issue is now public: http://www.mandriva.com/en/security/advisories?name=MDVSA-2010:138
Created iputils tracking bugs for this issue Affects: fedora-all [bug 617613]
Statement: (none)
iputils-20071127-12.fc13 has been pushed to the Fedora 13 stable repository. If problems still persist, please make note of it in this bug report.