[Bug 203132] New: Not enough information to check signature.
Zbigniew Luszpinski
zbiggy at o2.pl
Sun Aug 9 03:06:32 BST 2009
https://bugs.kde.org/show_bug.cgi?id=203132
Summary: Not enough information to check signature.
Product: kmail
Version: 1.12.0
Platform: unspecified
OS/Version: Linux
Status: UNCONFIRMED
Severity: normal
Priority: NOR
Component: general
AssignedTo: kdepim-bugs at kde.org
ReportedBy: zbiggy at o2.pl
Version: 1.12.0 (using 4.3.00 (KDE 4.3.0), compiled sources)
Compiler: gcc
OS: Linux (i686) release 2.6.30.4
Security error. KMail marks valid s/mime certs as yellow/unknown. Thunderbird
correctly verifies the same mail. This important security bug is present in all
KDE3 releases. Marking yellow correct and valid signed mails renders KMail
useless for serious use of mail.
Yellow background and message in KMail:
Not enough information to check signature. 0x6E397FA948A567BD
Status: No status information available.
Show Audit Log:
*
Data verification succeeded
Yes
*
Data available
Yes
*
Signature available
Yes
*
Parsing signature succeeded
Yes
*
Signature 0
Bad
*
(#0F8155AE522723A99084341BDF7BEB0D/OU=VeriSign Class 2 OnSite Individual
CA,O=VeriSign)
*
Certificate chain available
Yes
*
(root certificate missing)
*
(#0F8155AE522723A99084341BDF7BEB0D/OU=VeriSign Class 2 OnSite Individual
CA,O=VeriSign)
*
(/1.2.840.113549.1.9.1=#6B6F6E74616B74406D62616E6B2E706C,CN=mBank\, Bankowosc
Detaliczna BRE Banku SA,OU=www.verisign.com/repository/CPS Incorp. by
Ref.\,LIAB.LTD(c)99,OU=DIN,O=BRE Bank SA,L=Warszawa,ST=mazowieckie,C=PL)
*
Certificate chain valid
No
*
(Not found)
*
CRL/OCSP check of certificates
-
*
Included certificates
2
*
(#0F8155AE522723A99084341BDF7BEB0D/OU=VeriSign Class 2 OnSite Individual
CA,O=VeriSign)
*
(/1.2.840.113549.1.9.1=#6B6F6E74616B74406D62616E6B2E706C,CN=mBank\, Bankowosc
Detaliczna BRE Banku SA,OU=www.verisign.com/repository/CPS Incorp. by
Ref.\,LIAB.LTD(c)99,OU=DIN,O=BRE Bank SA,L=Warszawa,ST=mazowieckie,C=PL)
*
(#60380BA28BC650E209C1B6FF18348FB4/OU=VeriSign Trust Network,OU=(c) 1998
VeriSign\, Inc. - For authorized use only,OU=Class 2 Public Primary
Certification Authority - G2,O=VeriSign\, Inc.,C=US)
*
(/OU=VeriSign Class 2 OnSite Individual CA,O=VeriSign)
*
Dirmngr usable
Yes
--
Configure bugmail: https://bugs.kde.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.
More information about the Kdepim-bugs
mailing list