CVE-2018-20954
08.08.2019, 21:15
The "Security and Privacy" Encryption feature in Mailpile before 1.0.0rc4 does not exclude disabled, revoked, and expired keys.Enginsight
| Vendor | Product | Version |
|---|---|---|
| mailpile | mailpile | 0.5.0 |
| mailpile | mailpile | 0.5.1 |
| mailpile | mailpile | 0.5.2 |
| mailpile | mailpile | 1.0.0:rc0 |
| mailpile | mailpile | 1.0.0:rc1 |
| mailpile | mailpile | 1.0.0:rc2 |
| mailpile | mailpile | 1.0.0:rc3 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References