Man-in-the-Middle Vulnerability in KDE Trojita IMAP Client
CVE-2021-38372
3.7LOW
What is CVE-2021-38372?
In KDE Trojita version 0.7, a vulnerability exists that allows man-in-the-middle attackers to exploit untagged responses from an IMAP server prior to the establishment of a STARTTLS connection. This flaw enables unauthorized individuals to manipulate folder structures in a way that compromises user security. It underscores the need for secure communication practices, particularly around email clients, to prevent such attacks.
