Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Ubuntu 13.04 USN-1922-1 Moderate: Evolution Email Encryption Error

ubuntu
Calendar Grey July 31, 2013
Scroller Ubuntu
Security advisory USN-1931-1 reveals a vulnerability in the Network Time Protocol affecting time synchronization in Debian systems.
Evolution would sometimes encrypt email to the wrong recipient.

Summary

Evolution would sometimes encrypt email to the wrong recipient.

Software Description:

- evolution-data-server: Evolution suite data server

Details:

Yves-Alexis Perez discovered that Evolution Data Server did not properly

select GPG recipients. Under certain circumstances, this could result in

Evolution encrypting email to an unintended recipient.

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 13.04:
  libcamel-1.2-40                 3.6.4-0ubuntu1.1

Ubuntu 12.10:
  libcamel-1.2-40                 3.6.2-0ubuntu0.2

Ubuntu 12.04 LTS:
  libcamel-1.2-29                 3.2.3-0ubuntu7.1

After a standard system update you need to restart Evolution to make all
the necessary changes.

References

https://ubuntu.com/security/notices/USN-1922-1

CVE-2013-4166

=========================================================================Ubuntu Security Notice USN-1922-1

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.