LWN.net Logo

claws-mail: user credential leak

Package(s):claws-mail CVE #(s):CVE-2012-5527
Created:December 3, 2012 Updated:January 18, 2013
Description: From the Red Hat bugzilla:

A security flaw was found in the way vCalendar plug-in of Claws Mail displayed user credential information in the system tray display when using https scheme. A local attacker could use this flaw to obtain user credentials (username and password) used for connection to remote point.

Alerts:
Fedora FEDORA-2012-18558 2012-12-03
Fedora FEDORA-2012-18559 2012-12-03
Fedora FEDORA-2012-18558 2012-12-03
Fedora FEDORA-2012-18559 2012-12-03
Mageia MGASA-2013-0014 2013-01-18

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds