PT-2020-14735 · Kde+2 · Kde Kmail+2

Published

2020-07-27

·

Updated

2020-08-25

·

CVE-2020-15954

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions KDE KMail version 19.12.3 (aka 5.13.3)
Description The issue concerns unencrypted POP3 communication in KDE KMail, which occurs even when the UI indicates that encryption is being used.
Recommendations For version 19.12.3 (aka 5.13.3), consider configuring the email client to use encrypted communication protocols to mitigate the risk of unencrypted data transmission.

Fix

Cleartext Transmission of Sensitive Information

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2020-2597
CVE-2020-15954
DLA-2300-1
MGASA-2020-0346

Affected Products

Alt Linux
Debian
Kde Kmail