[kmail2] [Bug 404698] Decryption Oracle based on replying to PGP or S/MIME encrypted emails

Albert Astals Cid bugzilla_noreply at kde.org
Sat Apr 13 11:39:21 BST 2019


https://bugs.kde.org/show_bug.cgi?id=404698

Albert Astals Cid <aacid at kde.org> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |aacid at kde.org

--- Comment #6 from Albert Astals Cid <aacid at kde.org> ---
I am not sure I understand where the problem is, potentially means you need to
explain it in simpler words (or that i need to learn how to read long sentences
:D)

Is this problem?
 * A sends encrypted email to B
 * C intercepts that email
 * C resends the email modified to B (adding his own reply address and some
plain text)
 * B answers to C
 * C can see the original email

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the Kdepim-bugs mailing list