CVE-2021-31855 - log back

CVE-2021-31855 edited at 29 Apr 2021 20:49:27
Severity
- Unknown
+ Low
Remote
- Unknown
+ Remote
Type
- Unknown
+ Information disclosure
Description
+ Deleting an attachment of a decrypted encrypted message stored on a remote server (e.g. an IMAP server) causes KMail to upload the decrypted content of the message to the remote server. This is not easily noticeable by the user because KMail does not display the decrypted content.
References
+ https://kde.org/info/security/advisory-20210429-1.txt
+ https://invent.kde.org/pim/messagelib/commit/3b5b171e91ce78b966c98b1292a1bcbc8d984799
Notes
CVE-2021-31855 created at 29 Apr 2021 20:45:58