Bugzilla – Bug 1190174
VUL-0: CVE-2021-38373: kmail: STARTTLS is ignored when "Server requires authentication" not checked in UI
Last modified: 2021-09-03 15:15:08 UTC
rh#1995180 The STARTTLS option of SMTP is ignored, when "Server requires authentication" is not checked. In this case kmail will send any mail in cleartext. References: https://bugs.kde.org/show_bug.cgi?id=423423 References: https://bugzilla.redhat.com/show_bug.cgi?id=1995180 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2021-38373 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-38373 https://nostarttls.secvuln.info https://bugs.kde.org/show_bug.cgi?id=423423