First published: Tue Oct 19 2010(Updated: )
Race condition in `ZEO/StorageServer.py` in Zope Object Database (ZODB) before 3.10.0a2 allows remote attackers to cause a denial of service (daemon outage) by establishing and then immediately closing a TCP connection, leading to the accept function having an unexpected return value of None, an unexpected value of None for the address, or an ECONNABORTED, EAGAIN, or EWOULDBLOCK error, a related issue to CVE-2010-3492.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zope Zodb | =3.9.0 | |
Zope Zodb | =3.8.2 | |
Zope Zodb | =3.2 | |
Zope Zodb | =3.9.0b5 | |
Zope Zodb | =2.11.4 | |
Zope Zodb | =2.9.11 | |
Zope Zodb | =3.8.0 | |
Zope Zodb | =3.5 | |
Zope Zodb | =3.4 | |
Zope Zodb | =3.1.1 | |
Zope Zodb | =3.9.0b1 | |
Zope Zodb | =3.3 | |
Zope Zodb | =3.7 | |
Zope Zodb | =3.9.0b3 | |
Zope Zodb | =2.10.9 | |
Zope Zodb | =3.8.6 | |
Zope Zodb | =3.1 | |
Zope Zodb | =3.6 | |
Zope Zodb | =3.2.4 | |
Zope Zodb | =3.8 | |
Zope Zodb | =3.9.0c1 | |
Zope Zodb | =3.9.0b4 | |
Zope Zodb | =3.8.1 | |
Zope Zodb | =3.4.1 | |
Zope Zodb | =3.3.3 | |
Zope Zodb | <=3.9.7 | |
Zope Zodb | =2.8.11 | |
Zope Zodb | =3.9.0b2 | |
pip/zodb3 | <3.10.0a2 | 3.10.0a2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.