Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mpf2-q34c-fc6j

Опубликовано: 22 июл. 2019
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

Infinite Loop in scapy

scapy is affected by a Denial of Service vulnerability resulting in an infinite loop and resource consumption rendering the program unresponsive. The component is: _RADIUSAttrPacketListField.getfield(self..). The attack vector is over the network or in a pcap. both work.

Пакеты

Наименование

scapy

pip
Затронутые версииВерсия исправления

>= 2.4-rc1, < 2.4.1

2.4.1

EPSS

Процентиль: 83%
0.01928
Низкий

7.5 High

CVSS3

Дефекты

CWE-835

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 6 лет назад

scapy 2.4.0 is affected by: Denial of Service. The impact is: infinite loop, resource consumption and program unresponsive. The component is: _RADIUSAttrPacketListField.getfield(self..). The attack vector is: over the network or in a pcap. both work.

CVSS3: 7.5
nvd
больше 6 лет назад

scapy 2.4.0 is affected by: Denial of Service. The impact is: infinite loop, resource consumption and program unresponsive. The component is: _RADIUSAttrPacketListField.getfield(self..). The attack vector is: over the network or in a pcap. both work.

CVSS3: 7.5
debian
больше 6 лет назад

scapy 2.4.0 is affected by: Denial of Service. The impact is: infinite ...

EPSS

Процентиль: 83%
0.01928
Низкий

7.5 High

CVSS3

Дефекты

CWE-835