SUSE-SU-2020:0413-1

Source
https://www.suse.com/support/update/announcement/2020/suse-su-20200413-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:0413-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2020:0413-1
Published
2020-02-19T09:21:43Z
Modified
2020-02-19T09:21:43Z
Summary
Security update for enigmail
Details

This update for enigmail fixes the following issues:

enigmail was updated to 2.1.5:

  • Security issue: unsigned MIME parts displayed as signed (bsc#1159973)
  • Ensure that upgrading GnuPG 2.0.x to 2.2.x upgrade converts keyring format
  • Make Enigmail Compatible with Protected-Headers spec, draft 2

enigmail 2.1.4:

  • Fixes for UI glitches
  • Option to 'Attach public key to messages' was not restored properly

enigmail 2.1.3:

  • fix a bug in the setup wizard that could lead the wizard to never complete scanning the inbox
References

Affected packages

SUSE:Linux Enterprise Workstation Extension 15 SP1 / enigmail

Package

Name
enigmail
Purl
pkg:rpm/suse/enigmail&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2015%20SP1

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
2.1.5-3.22.1

Ecosystem specific

{
    "binaries":  [
        {
            "enigmail":  "2.1.5-3.22.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:0413-1.json"