VYPR

rpm package

opensuse/python-kafka-python&distro=openSUSE Tumbleweed

pkg:rpm/opensuse/python-kafka-python&distro=openSUSE%20Tumbleweed

Vulnerabilities (1)

  • CVE-2026-10142HigJun 10, 2026
    affected < 2.3.2-1.1fixed 2.3.2-1.1

    kafka-python prior to 2.3.2 contains a denial-of-service vulnerability in the protocol parser that allows a malicious broker or machine-in-the-middle attacker to exhaust memory or hang connections by sending a crafted 4-byte frame length value without bounds validation. Attackers