CVE-2018-15587

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
11/02/2019
Last modified:
10/06/2019

Description

GNOME Evolution through 3.28.2 is prone to OpenPGP signatures being spoofed for arbitrary messages using a specially crafted email that contains a valid signature from the entity to be impersonated as an attachment.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gnome:evolution:*:*:*:*:*:*:*:* 3.28.2 (including)
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*