ZServer in Zope 2.10.x before 2.10.12 and 2.11.x before 2.11.7 allows remote attackers to cause a denial of service (crash of worker threads) via vectors that trigger uncaught exceptions.
2010-09-08T20:00:04.573
2025-04-11T00:51:21.963
Deferred
CVSSv2: 4.3 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:N/A:P
8.6
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | zope | zope | 2.10.0-b1 | Yes |
| Application | zope | zope | 2.10.0-b2 | Yes |
| Application | zope | zope | 2.10.0-c1 | Yes |
| Application | zope | zope | 2.10.0-final | Yes |
| Application | zope | zope | 2.10.2 | Yes |
| Application | zope | zope | 2.10.2-b1 | Yes |
| Application | zope | zope | 2.10.2-final | Yes |
| Application | zope | zope | 2.10.3 | Yes |
| Application | zope | zope | 2.10.3-final | Yes |
| Application | zope | zope | 2.10.4-final | Yes |
| Application | zope | zope | 2.10.5 | Yes |
| Application | zope | zope | 2.10.6 | Yes |
| Application | zope | zope | 2.10.7 | Yes |
| Application | zope | zope | 2.10.8 | Yes |
| Application | zope | zope | 2.10.9 | Yes |
| Application | zope | zope | 2.10.10 | Yes |
| Application | zope | zope | 2.10.11 | Yes |
| Application | zope | zope | 2.11.0 | Yes |
| Application | zope | zope | 2.11.0a1 | Yes |
| Application | zope | zope | 2.11.0b1 | Yes |
| Application | zope | zope | 2.11.0c1 | Yes |
| Application | zope | zope | 2.11.1 | Yes |
| Application | zope | zope | 2.11.2 | Yes |
| Application | zope | zope | 2.11.3 | Yes |
| Application | zope | zope | 2.11.4 | Yes |
| Application | zope | zope | 2.11.5 | Yes |
| Application | zope | zope | 2.11.6 | Yes |