CVE-2019-1010142

EUVD-2019-0128
scapy 2.4.0 is affected by: Denial of Service. The impact is: infinite loop, resource consumption and program unresponsive. The component is: _RADIUSAttrPacketListField.getfield(self..). The attack vector is: over the network or in a pcap. both work.
Infinite Loop
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
7.5 HIGH
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 83%
Affected Products (NVD)
VendorProductVersion
scapyscapy
2.4.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
scapy
bookworm
2.5.0+dfsg-2
fixed
bullseye
2.4.4-4
fixed
buster
no-dsa
jessie
not-affected
sid
2.6.0+dfsg-2
fixed
stretch
not-affected
trixie
2.6.0+dfsg-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
scapy
bionic
not-affected
disco
not-affected
trusty
dne
xenial
not-affected