CVE-2022-26662

Priority
Description
An XML Entity Expansion (XEE) issue was discovered in Tryton Application
Platform (Server) 5.x through 5.0.45, 6.x through 6.0.15, and 6.1.x and
6.2.x through 6.2.5, and Tryton Application Platform (Command Line Client
(proteus)) 5.x through 5.0.11, 6.x through 6.0.4, and 6.1.x and 6.2.x
through 6.2.1. An unauthenticated user can send a crafted XML-RPC message
to consume all the resources of the server.
Notes
Package
Upstream:needs-triage
Ubuntu 18.04 LTS:needs-triage
Ubuntu 20.04 LTS:needs-triage
Ubuntu 21.10:needs-triage
Ubuntu 22.04 LTS:needs-triage
Patches:
Package
Upstream:needs-triage
Ubuntu 18.04 LTS:needs-triage
Ubuntu 20.04 LTS:needs-triage
Ubuntu 21.10:needs-triage
Ubuntu 22.04 LTS:needs-triage
Patches:
More Information

Updated: 2022-04-25 01:01:49 UTC (commit ecc1009cb19540b950de59270950018900f37f15)