CVE-2021-3349: Low severity Gnome Evolution vulnerability
DISPUTED GNOME Evolution through 3.38.3 produces a "Valid signature" message for an unknown identifier on a previously trusted key because Evolution does not retrieve enough information from the GnuPG API. NOTE: third parties dispute the significance of this issue, and dispute whether Evolution is the best place to change this behavior.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-3349.
What is the severity of CVE-2021-3349?
The severity of CVE-2021-3349 is low.
What software is affected by CVE-2021-3349?
GNOME Evolution versions up to 3.38.3 are affected by CVE-2021-3349.
What is the description of CVE-2021-3349?
CVE-2021-3349 is a disputed vulnerability in GNOME Evolution that produces a "Valid signature" message for an unknown identifier on a previously trusted key due to insufficient retrieval of information from the GnuPG API.
Are there any references available for CVE-2021-3349?
Yes, you can find references for CVE-2021-3349 at the following links: [1] [2] [3]