Total vulnerabilities in the database
KMail 1.9.5 and earlier does not properly use the --status-fd argument when invoking GnuPG, which prevents KMail from visually distinguishing between signed and unsigned portions of OpenPGP messages with multiple components, which allows remote attackers to forge the contents of a message without detection.
Software | From | Fixed in |
---|---|---|
kde / k-mail | 1.0.26 | 1.0.26.x |
kde / k-mail | 1.88 | 1.88.x |
kde / k-mail | 1.86.2.36 | 1.86.2.36.x |
kde / k-mail | 1.1 | 1.1.x |
kde / k-mail | 1.95 | 1.95.x |
kde / k-mail | 1.92 | 1.92.x |
kde / k-mail | 1.0.23 | 1.0.23.x |
kde / k-mail | 1.3.1 | 1.3.1.x |
kde / k-mail | 0.0.29.2 | 0.0.29.2.x |
kde / k-mail | 1.93 | 1.93.x |
kde / k-mail | 1.0.24 | 1.0.24.x |
kde / k-mail | 1.0.25 | 1.0.25.x |
kde / k-mail | 1.0.27 | 1.0.27.x |
kde / k-mail | 1.102 | 1.102.x |
kde / k-mail | 1.87 | 1.87.x |
kde / k-mail | 1.90 | 1.90.x |
kde / k-mail | 1.0.29.1 | 1.0.29.1.x |
kde / k-mail | 1.0.29 | 1.0.29.x |
kde / k-mail | 1.9.1 | 1.9.1.x |
kde / k-mail | 1.0.29.2 | 1.0.29.2.x |
kde / k-mail | 1.2 | 1.2.x |
kde / k-mail | 1.101 | 1.101.x |
kde / k-mail | 1.7.1 | 1.7.1.x |
kde / k-mail | 1.94 | 1.94.x |
kde / k-mail | 1.89 | 1.89.x |
kde / k-mail | 1.0.28 | 1.0.28.x |