cpe:/a:zope:zodb:2.8.11 cpe:/a:zope:zodb:2.9.11 cpe:/a:zope:zodb:2.10.9 cpe:/a:zope:zodb:2.11.4 cpe:/a:zope:zodb:3.1 cpe:/a:zope:zodb:3.1.1 cpe:/a:zope:zodb:3.2 cpe:/a:zope:zodb:3.2.4 cpe:/a:zope:zodb:3.3 cpe:/a:zope:zodb:3.3.3 cpe:/a:zope:zodb:3.4 cpe:/a:zope:zodb:3.4.1 cpe:/a:zope:zodb:3.5 cpe:/a:zope:zodb:3.6 cpe:/a:zope:zodb:3.7 cpe:/a:zope:zodb:3.8 cpe:/a:zope:zodb:3.8.0 cpe:/a:zope:zodb:3.8.1 cpe:/a:zope:zodb:3.8.2 cpe:/a:zope:zodb:3.8.6 cpe:/a:zope:zodb:3.9.0 cpe:/a:zope:zodb:3.9.0b1 cpe:/a:zope:zodb:3.9.0b2 cpe:/a:zope:zodb:3.9.0b3 cpe:/a:zope:zodb:3.9.0b4 cpe:/a:zope:zodb:3.9.0b5 cpe:/a:zope:zodb:3.9.0c1 cpe:/a:zope:zodb:3.9.7 CVE-2010-3495 2010-10-19T16:00:04.377-04:00 2011-01-22T01:43:28.580-05:00 4.3 NETWORK MEDIUM NONE NONE NONE PARTIAL http://nvd.nist.gov 2010-10-20T16:26:00.000-04:00 SECUNIA 41755 SUSE SUSE-SR:2010:024 MLIST [oss-security] 20100909 CVE Request -- Python -- accept() implementation in async core is broken => more subcases MLIST [oss-security] 20100910 Re: CVE Request -- Python -- accept() implementation in async core is broken => more subcases MLIST [oss-security] 20100922 Re: CVE Request -- Python -- accept() implementation in async core is broken => more subcases MLIST [oss-security] 20100924 Re: CVE Request -- Python -- accept() implementation in async core is broken => more subcases MISC http://bugs.python.org/issue6706 CONFIRM http://pypi.python.org/pypi/ZODB3/3.10.0#id1 CONFIRM https://bugs.launchpad.net/zodb/+bug/135108 Race condition in ZEO/StorageServer.py in Zope Object Database (ZODB) before 3.10.0 allows remote attackers to cause a denial of service (daemon outage) by establishing and then immediately closing a TCP connection, leading to the accept function having an unexpected return value of None, an unexpected value of None for the address, or an ECONNABORTED, EAGAIN, or EWOULDBLOCK error, a related issue to CVE-2010-3492.