High severity7.5NVD Advisory· Published Jul 19, 2019· Updated Jun 17, 2026
CVE-2019-1010142
CVE-2019-1010142
Description
scapy 2.4.0 is affected by: Denial of Service. The impact is: infinite loop, resource consumption and program unresponsive. The component is: _RADIUSAttrPacketListField.getfield(self..). The attack vector is: over the network or in a pcap. both work.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
scapyPyPI | >= 2.4-rc1, < 2.4.1 | 2.4.1 |
Affected products
5cpe:2.3:o:fedoraproject:fedora:29:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:fedoraproject:fedora:29:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:30:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
12- github.com/secdev/scapy/pull/1409nvdPatchThird Party AdvisoryWEB
- github.com/secdev/scapy/pull/1409/filesnvdPatchThird Party AdvisoryWEB
- www.imperva.com/blog/scapy-sploit-python-network-tool-is-vulnerable-to-denial-of-service-dos-attack-cve-pending/nvdExploitPatchThird Party Advisory
- www.securityfocus.com/bid/106674nvdBroken LinkThird Party AdvisoryVDB Entry
- github.com/advisories/GHSA-mpf2-q34c-fc6jghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2019-1010142ghsaADVISORY
- github.com/pypa/advisory-database/tree/main/vulns/scapy/PYSEC-2019-120.yamlghsaWEB
- lists.fedoraproject.org/archives/list/[email protected]/message/42NRPMC3NS2QVFNIXYP6WV2T3LMLLY7EghsaWEB
- lists.fedoraproject.org/archives/list/[email protected]/message/T46XW4S5BCA3VV3JT3C5Q6LBEXSIACLNghsaWEB
- www.imperva.com/blog/scapy-sploit-python-network-tool-is-vulnerable-to-denial-of-service-dos-attack-cve-pendingghsaWEB
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/42NRPMC3NS2QVFNIXYP6WV2T3LMLLY7E/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/T46XW4S5BCA3VV3JT3C5Q6LBEXSIACLN/nvd
News mentions
0No linked articles in our index yet.