Security update for enigmail

Announcement ID: SUSE-SU-2020:0413-1
Rating: moderate
References:
Affected Products:
  • SUSE Linux Enterprise Desktop 15 SP1
  • SUSE Linux Enterprise Server 15 SP1
  • SUSE Linux Enterprise Server for SAP Applications 15 SP1
  • SUSE Linux Enterprise Workstation Extension 15 SP1

An update that has one security fix can now be installed.

Description:

This update for enigmail fixes the following issues:

enigmail was updated to 2.1.5:

  • Security issue: unsigned MIME parts displayed as signed (bsc#1159973)
  • Ensure that upgrading GnuPG 2.0.x to 2.2.x upgrade converts keyring format
  • Make Enigmail Compatible with Protected-Headers spec, draft 2

enigmail 2.1.4:

  • Fixes for UI glitches
  • Option to "Attach public key to messages" was not restored properly

enigmail 2.1.3:

  • fix a bug in the setup wizard that could lead the wizard to never complete scanning the inbox

Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:

  • SUSE Linux Enterprise Workstation Extension 15 SP1
    zypper in -t patch SUSE-SLE-Product-WE-15-SP1-2020-413=1

Package List:

  • SUSE Linux Enterprise Workstation Extension 15 SP1 (x86_64)
    • enigmail-2.1.5-3.22.1

References: