It was discovered that there was an issue where kmail would default to using unencrypted POP3 communication despite the UI indicating that encryption was in use (CVE-2020-15954). References: . MGASA-2020-0346 - Updated kdepim-runtime and kmail-account-wizard packages fix security vulnerability Publication date: 25 Aug 2020 URL: https://advisories.mageia.org/MGASA-2020-0346.html Type: security Affected Mageia releases: 7 CVE: CVE-2020-15954 It was discovered that there was an issue where kmail would default to using unencrypted POP3 communication despite the UI indicating that encryption was in use (CVE-2020-15954). References: - https://bugs.mageia.org/show_bug.cgi?id=27035 - https://lists.debian.org/debian-lts-announce/2020/07/msg00030.html - https://www.cve.org/CVERecord?id=CVE-2020-15954 SRPMS: - 7/core/kmail-account-wizard-19.04.0-1.1.mga7 - 7/core/kdepim-runtime-19.04.0-1.2.mga7 . MGASA-2020-0347: kdenetwork-filesharing and kget packages address vulnerabilities in Mageia.. KMail, Mageia Security, KDEPIM Update, Unencrypted POP3, Security Update. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.