CVE-2020-15954: Medium severity kmail vulnerability
Published Jul 27, 2020
·Updated
KDE KMail 19.12.3 (aka 5.13.3) engages in unencrypted POP3 communication during times when the UI indicates that encryption is in use.
Affected Software
2 affected components
KDE kmail=19.12.3
Debian Debian Linux=9.0
Event History
Jul 27, 2020
CVE Published
via MITRE·06:06 AM
Data Sourced
via MITRE·06:06 AM
Description
Frequently Asked Questions
1
What is CVE-2020-15954?
CVE-2020-15954 is a vulnerability in KDE KMail 19.12.3 (aka 5.13.3) that engages in unencrypted POP3 communication despite indicating that encryption is in use.
2
How does CVE-2020-15954 affect KDE KMail?
CVE-2020-15954 affects KDE KMail 19.12.3, allowing unencrypted POP3 communication even when the UI suggests that encryption is being used.
3
What is the severity of CVE-2020-15954?
CVE-2020-15954 has a severity keyword of 'medium' and a severity value of 6.5.
4
How can I fix CVE-2020-15954 in KDE KMail?
To fix CVE-2020-15954 in KDE KMail, it is recommended to update to a version where the vulnerability has been patched.
5
Where can I find more information about CVE-2020-15954?
More information about CVE-2020-15954 can be found at the following references: [1][2]