Bug 1174579 - (CVE-2020-15953) VUL-0: CVE-2020-15953: libetpan: response injection via STARTTLS in IMAP
(CVE-2020-15953)
VUL-0: CVE-2020-15953: libetpan: response injection via STARTTLS in IMAP
Status: RESOLVED FIXED
Classification: openSUSE
Product: openSUSE Distribution
Classification: openSUSE
Component: Security
Leap 15.1
Other Other
: P3 - Medium : Normal (vote)
: ---
Assigned To: Peter Poeml
Security Team bot
https://smash.suse.de/issue/264274/
:
Depends on:
Blocks: NOSTARTTLS
  Show dependency treegraph
 
Reported: 2020-07-28 06:23 UTC by Alexandros Toptsoglou
Modified: 2021-08-09 11:40 UTC (History)
2 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Alexandros Toptsoglou 2020-07-28 06:23:07 UTC
CVE-2020-15953

LibEtPan through 1.9.4, as used in MailCore 2 through 0.6.3 and other products, has a STARTTLS buffering issue that affects IMAP, SMTP, and POP3. When a server sends a "begin TLS" response, the client reads additional data (e.g., from a meddler-in-the-middle attacker) and evaluates it in a TLS context, aka "response injection."

Reference:
https://github.com/dinhvh/libetpan/issues/386

References:
https://bugzilla.redhat.com/show_bug.cgi?id=1861068
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2020-15953
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15953
https://github.com/dinhvh/libetpan/issues/386
Comment 1 OBSbugzilla Bot 2020-08-16 00:00:08 UTC
This is an autogenerated message for OBS integration:
This bug (1174579) was mentioned in
https://build.opensuse.org/request/show/826908 Factory / libetpan
https://build.opensuse.org/request/show/826909 15.2 / libetpan
Comment 2 Swamp Workflow Management 2020-09-19 16:22:09 UTC
openSUSE-SU-2020:1454-1: An update that fixes one vulnerability is now available.

Category: security (moderate)
Bug References: 1174579
CVE References: CVE-2020-15953
JIRA References: 
Sources used:
openSUSE Leap 15.2 (src):    libetpan-1.9.4-lp152.3.3.1
Comment 3 Swamp Workflow Management 2020-09-22 19:28:00 UTC
openSUSE-SU-2020:1505-1: An update that fixes one vulnerability is now available.

Category: security (moderate)
Bug References: 1174579
CVE References: CVE-2020-15953
JIRA References: 
Sources used:
openSUSE Backports SLE-15-SP2 (src):    libetpan-1.9.4-bp152.4.3.1
Comment 4 Marcus Meissner 2021-08-09 11:40:01 UTC
released