Debian Security Advisory

DLA-882-1 tryton-server -- LTS security update

Date Reported:
04 Apr 2017
Affected Packages:
tryton-server
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2017-0360.
More information:

It was discovered that there was a path suffix injection attack in tryton-server, a general purpose application platform.

For Debian 7 Wheezy, this issue has been fixed in tryton-server version 2.2.4-1+deb7u4.

We recommend that you upgrade your tryton-server packages.