Alerts This Week
Warning Icon 1 535
Alerts This Week
Warning Icon 1 535

Fedora 25: FEDORA-2016-d961441913 critical: trytond security fixes

fedora
Calendar Grey September 13, 2016
Dist Fedora Esm H88
Fedora 25 releases a security patch focused on essential updates to trytond, aimed at fortifying application resilience and overall safety.
- security fix for CVE-2016-1241, CVE-2016-1242 - other bug fixes

Summary

Tryton is a three-tiers high-level general purpose application framework

written in Python and use PostgreSQL as database engine. It is the core base

of an Open Source ERP. It provides modularity, scalability and security.

The core of Tryton (also called Tryton kernel) provides all the necessary

functionalities for a complete application framework: data persistence (i.e

an ORM with extensive modularity), users management (authentication, fine

grained control for data access, handling of concurrent access of resources),

workflow and report engines, web services and internationalisation. Thus

constituting a complete application platform which can be used for any

relevant purpose.

Update Information:

- security fix for CVE-2016-1241, CVE-2016-1242 - other bug fixes

Change Log

References


[ 1 ] Bug #1374220 - CVE-2016-1242 tryton: admin user able to access all files on system https://bugzilla.redhat.com/show_bug.cgi?id=1374220 [ 2 ] Bug #1374172 - CVE-2016-1241 tryton: password hashes leak to authenticated users https://bugzilla.redhat.com/show_bug.cgi?id=1374172

Update Instructions

This update can be installed with the "yum" update program. Use su -c 'yum update trytond' at the command line. For more information, refer to "Managing Software with yum", available at .

Severity
critical
Lowest
Low
Medium
High
Critical

Name: trytond
Product: Fedora 25
Version: 4.0.4
Release: 1.fc25
Summary: Server for the Tryton application framework

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here