openSUSE Security Update : enigmail (openSUSE-2020-250)

medium Nessus Plugin ID 134154

Language:

Synopsis

The remote openSUSE host is missing a security update.

Description

This update for enigmail fixes the following issues :

enigmail was updated to 2.1.5 :

- Security issue: unsigned MIME parts displayed as signed (bsc#1159973)

- Ensure that upgrading GnuPG 2.0.x to 2.2.x upgrade converts keyring format

- Make Enigmail Compatible with Protected-Headers spec, draft 2

enigmail 2.1.4 :

- Fixes for UI glitches

- Option to 'Attach public key to messages' was not restored properly

enigmail 2.1.3 :

- fix a bug in the setup wizard that could lead the wizard to never complete scanning the inbox

This update was imported from the SUSE:SLE-15:Update update project.

Solution

Update the affected enigmail package.

See Also

https://bugzilla.opensuse.org/show_bug.cgi?id=1159973

Plugin Details

Severity: Medium

ID: 134154

File Name: openSUSE-2020-250.nasl

Version: 1.1

Type: Local

Agent: unix

Published: 2/28/2020

Updated: 2/28/2020

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Continuous Assessment, Nessus

Vulnerability Information

CPE: p-cpe:/a:novell:opensuse:enigmail, cpe:/o:novell:opensuse:15.1

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Patch Publication Date: 2/27/2020

Vulnerability Publication Date: 2/27/2020