Back

MEDIUM

evolution: specially crafted email leading to OpenPGP signatures being spoofed for arbitrary messages

Published Feb 11, 2019

Description

GNOME Evolution through 3.28.2 is prone to OpenPGP signatures being spoofed for arbitrary messages using a specially crafted email that contains a valid signature from the entity to be impersonated as an attachment.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (17)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Feb 11, 2019
Updated Aug 5, 2024
Reserved Aug 20, 2018
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date May 27, 2018