Boletines de Vulnerabilidades

DSA-4457 evolution - security update


Información sobre el sistema

   
Software afectado Debian

Descripción

Hanno Böck discovered that Evolution was vulnerable to OpenPGPsignatures being spoofed for arbitrary messages using a speciallycrafted HTML email. This issue was mitigated by moving the securitybar with encryption and signature information above the messageheaders.

More info:

https://www.debian.org/security/2019/dsa-4457

Identificadores estándar

Propiedad Valor
CVE CVE-2018-15587 and DSA-4457.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2019-06-09

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT