Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 27: FEDORA-2018-eacf5a9ce8 Critical: Thunderbird DoS Issue

fedora
Calendar Grey August 14, 2018
Dist Fedora Esm H88
Important patch for Thunderbird Enigmail on Fedora 27 addresses vulnerabilities concerning the authentication of HTML messages.
Update to 2.0.8: * A security issue has been fixed that allows an attacker to prepare a plain, unauthenticated HTML message in a way that it looks like it's signed and/or encrypte...

Summary

Enigmail is an extension to the mail client Mozilla Thunderbird

which allows users to access the authentication and encryption

features provided by GnuPG

Update to 2.0.8: * A security issue has been fixed that allows an attacker

to prepare a plain, unauthenticated HTML message in a way that it looks like

it's signed and/or encrypted. * Changelog:

https://enigmail.net/index.php/en/download/changelog

* Sun Aug 5 2018 Christian Dersch - 2.0.8-1

- new version

* Sat Jul 14 2018 Fedora Release Engineering - 2.0.7-2

- Rebuilt for https://fedoraproject.org/wiki/Fedora_29_Mass_Rebuild

* Thu Jun 14 2018 Christian Dersch - 2.0.7-1

- new version

* Mon May 28 2018 Christian Dersch - 2.0.6-1

- new version

* Sat May 19 2018 Christian Dersch - 2.0.4-1

- new version fixing efail vulnerability

* Fri Feb 9 2018 Fedora Release Engineering - 1.9.9-2

- Rebuilt for https://fedoraproject.org/wiki/Fedora_28_Mass_Rebuild

* Fri Dec 22 2017 Christian Dersch - 1.9.9-1

- new version

su -c 'dnf upgrade --advisory FEDORA-2018-eacf5a9ce8' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DLEEMOWL6ESTEG4ULM4TV44CA6K4QFNM/

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 27
Version: 2.0.8
Release: 1.fc27
Summary: Authentication and encryption extension for Mozilla Thunderbird

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here