Bug#864803: CVE-2017-9604: Send Later with Delay bypasses OpenPGP

2017-06-20 Thread Sandro Knauß
Hey, I'm AFK from tomorrow one for at least one week, so I can't upload the packages in that time. I will not be the reason, why a security issue is longer than needed open. So use my debdiff as a "good" start to get this security issue fixed in stretch and jessie :) I think it will only

Bug#864803: CVE-2017-9604: Send Later with Delay bypasses OpenPGP

2017-06-17 Thread Sandro Knauß
Hey, I have now have a fixed version for stretch and sid (see debdiff). Because Debian is currently in the release process, I'm not sure, how to upload/handle the fix for stretch. Best Regards, sandro -- On Donnerstag, 15. Juni 2017 07:40:10 CEST Salvatore Bonaccorso wrote: > Source:

Bug#864803: CVE-2017-9604: Send Later with Delay bypasses OpenPGP

2017-06-14 Thread Salvatore Bonaccorso
Source: kf5-messagelib Version: 4:16.04.3-2 Severity: important Tags: patch upstream security Control: clone -1 -2 Control: reassign -2 kdepim 4:4.14.1-1 Hi, the following vulnerability was published for kf5-messagelib (and kmail). CVE-2017-9604[0]: | KDE kmail before 5.5.2 and messagelib