Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-3198

Опубликовано: 02 сент. 2010
Источник: redhat
CVSS2: 5

Описание

ZServer in Zope 2.10.x before 2.10.12 and 2.11.x before 2.11.7 allows remote attackers to cause a denial of service (crash of worker threads) via vectors that trigger uncaught exceptions.

Отчет

Not vulnerable. This issue did not affect the versions of conga as shipped with Red Hat Cluster Suite for Red Hat Enterprise Linux 4 and as shipped with Red Hat Enterprise Linux 5 as they use own internal mechanism to verify if user requesting particular page is authenticated. Plone private pages permissions configuration mechanism is not used in conga.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Cluster Suite 4AScongaNot affected
Red Hat Enterprise Linux 5congaNot affected

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=631772Zope: Zope child threads termination due unhandled exceptions in PluggableAuthService (PAS)

5 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 15 лет назад

ZServer in Zope 2.10.x before 2.10.12 and 2.11.x before 2.11.7 allows remote attackers to cause a denial of service (crash of worker threads) via vectors that trigger uncaught exceptions.

nvd
больше 15 лет назад

ZServer in Zope 2.10.x before 2.10.12 and 2.11.x before 2.11.7 allows remote attackers to cause a denial of service (crash of worker threads) via vectors that trigger uncaught exceptions.

debian
больше 15 лет назад

ZServer in Zope 2.10.x before 2.10.12 and 2.11.x before 2.11.7 allows ...

CVSS3: 7.5
github
больше 3 лет назад

Zope Denial of Service (DoS) vulnerability in ZServer

5 Medium

CVSS2