CVE-2019-12269

Publication date

2019-05-21 19:50:08

Family

mitre

State

PUBLISHED

Description

Enigmail before 2.0.11 allows PGP signature spoofing: for an inline PGP message, an attacker can cause the product to display a "correctly signed" message indication, but display different unauthenticated text.