// For flags

CVE-2010-3495

 

Severity Score

4.3
*CVSS v3

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Race condition in ZEO/StorageServer.py in Zope Object Database (ZODB) before 3.10.0 allows remote attackers to cause a denial of service (daemon outage) by establishing and then immediately closing a TCP connection, leading to the accept function having an unexpected return value of None, an unexpected value of None for the address, or an ECONNABORTED, EAGAIN, or EWOULDBLOCK error, a related issue to CVE-2010-3492.

Condición de carrera en ZEO/StorageServer.py en Zope Object Database (ZODB) antes de v3.10.0 permite a atacantes remotos provocar una denegación de servicio (parada programada del demonio) mediante el establecimiento e inmediatamente el cierre de una conexión TCP, lo que lleva a que la función 'accept' tenga un valor de retorno de 'None', un valor inesperado de 'None' para la dirección, o un error ECONNABORTED, EAGAIN o EWOULDBLOCK. Se trata de un problema relacionado con CVE-2010-3492.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
Low
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2010-09-24 CVE Reserved
  • 2010-10-19 CVE Published
  • 2024-08-07 CVE Updated
  • 2025-03-30 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-362: Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
<= 3.9.7
Search vendor "Zope" for product "Zodb" and version " <= 3.9.7"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
2.8.11
Search vendor "Zope" for product "Zodb" and version "2.8.11"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
2.9.11
Search vendor "Zope" for product "Zodb" and version "2.9.11"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
2.10.9
Search vendor "Zope" for product "Zodb" and version "2.10.9"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
2.11.4
Search vendor "Zope" for product "Zodb" and version "2.11.4"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.1
Search vendor "Zope" for product "Zodb" and version "3.1"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.1.1
Search vendor "Zope" for product "Zodb" and version "3.1.1"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.2
Search vendor "Zope" for product "Zodb" and version "3.2"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.2.4
Search vendor "Zope" for product "Zodb" and version "3.2.4"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.3
Search vendor "Zope" for product "Zodb" and version "3.3"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.3.3
Search vendor "Zope" for product "Zodb" and version "3.3.3"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.4
Search vendor "Zope" for product "Zodb" and version "3.4"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.4.1
Search vendor "Zope" for product "Zodb" and version "3.4.1"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.5
Search vendor "Zope" for product "Zodb" and version "3.5"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.6
Search vendor "Zope" for product "Zodb" and version "3.6"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.7
Search vendor "Zope" for product "Zodb" and version "3.7"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.8
Search vendor "Zope" for product "Zodb" and version "3.8"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.8.0
Search vendor "Zope" for product "Zodb" and version "3.8.0"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.8.1
Search vendor "Zope" for product "Zodb" and version "3.8.1"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.8.2
Search vendor "Zope" for product "Zodb" and version "3.8.2"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.8.6
Search vendor "Zope" for product "Zodb" and version "3.8.6"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.9.0
Search vendor "Zope" for product "Zodb" and version "3.9.0"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.9.0b1
Search vendor "Zope" for product "Zodb" and version "3.9.0b1"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.9.0b2
Search vendor "Zope" for product "Zodb" and version "3.9.0b2"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.9.0b3
Search vendor "Zope" for product "Zodb" and version "3.9.0b3"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.9.0b4
Search vendor "Zope" for product "Zodb" and version "3.9.0b4"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.9.0b5
Search vendor "Zope" for product "Zodb" and version "3.9.0b5"
-
Affected
Zope
Search vendor "Zope"
Zodb
Search vendor "Zope" for product "Zodb"
3.9.0c1
Search vendor "Zope" for product "Zodb" and version "3.9.0c1"
-
Affected