Bug#924616: RFT and RFC: Updates for evolution{,-data-server}

2019-04-26 Thread Jonas Meurer
Hi Mike, Mike Gabriel: > OnĀ  Mi 24 Apr 2019 12:56:18 CEST, Jonas Meurer wrote: > >> Jonas Meurer: >>> With evolution-data-server, the situation is slightly more complicated. >>> I'm still debugging issues with the patches[5] that are supposed to fix >>> the "[GPG] Mails that are not encrypted loo

Bug#924616: RFT and RFC: Updates for evolution{,-data-server}

2019-04-25 Thread Salvatore Bonaccorso
Hi Jonas [Adding security team alias, as debian-lts is not followed automatically] On Wed, Apr 24, 2019 at 11:08:44AM +0200, Jonas Meurer wrote: > Hello, > > The last days, I spent quite some hours on backporting and debugging > patches for CVE-2018-15587 (Signature Spoofing in PGP encrypted ema

Bug#924616: RFT and RFC: Updates for evolution{,-data-server}

2019-04-24 Thread Mike Gabriel
Hi Jonas, On Mi 24 Apr 2019 12:56:18 CEST, Jonas Meurer wrote: Jonas Meurer: With evolution-data-server, the situation is slightly more complicated. I'm still debugging issues with the patches[5] that are supposed to fix the "[GPG] Mails that are not encrypted look encrypted" issue. [5] http

Bug#924616: RFT and RFC: Updates for evolution{,-data-server}

2019-04-24 Thread Jonas Meurer
Jonas Meurer: > With evolution-data-server, the situation is slightly more complicated. > I'm still debugging issues with the patches[5] that are supposed to fix > the "[GPG] Mails that are not encrypted look encrypted" issue. > > [5] https://gitlab.gnome.org/GNOME/evolution-data-server/commit/933

Bug#924616: RFT and RFC: Updates for evolution{,-data-server}

2019-04-24 Thread Jonas Meurer
Hello, The last days, I spent quite some hours on backporting and debugging patches for CVE-2018-15587 (Signature Spoofing in PGP encrypted email) to evolution and evolution-data-server packages for Jessie LTS. One problem is that the scope of CVE-2018-15587 is a bit blurry. While the CVE descri