CVE-2020-15953 log
Source |
|
Severity | High |
Remote | No |
Type | Man-in-the-middle |
Description | LibEtPan 1.9.4 has a STARTTLS buffering issue that affects IMAP, SMTP, and POP3. When a server sends a "begin TLS" response, the client reads additional data (e.g., from a meddler-in-the-middle attacker) and evaluates it in a TLS context, aka "response injection." |
Group | Package | Affected | Fixed | Severity | Status | Ticket |
---|---|---|---|---|---|---|
AVG-1428 | libetpan | 1.9.4-2 | 1.9.4-3 | High | Fixed | FS#69284 |