Mailinglist Archive: opensuse-updates (114 mails)

< Previous Next >
openSUSE-SU-2014:1384-1: moderate: claws-mail: version update to 3.11.0
openSUSE Security Update: claws-mail: version update to 3.11.0
______________________________________________________________________________

Announcement ID: openSUSE-SU-2014:1384-1
Rating: moderate
References: #903276
Cross-References: CVE-2014-3566
Affected Products:
openSUSE 13.2
______________________________________________________________________________

An update that fixes one vulnerability is now available.

Description:


Claws Mail was updated to version 3.11.0.

Changes:
+ SSLv3 server connections are now disabled by default, in response to the
POODLE vulnerability (CVE-2014-3566).
+ Several PGP/Core plugin improvements:
- Indicate when a key has been revoked or has expired when displaying
signature status.
- When displaying the full information, show the Validity, and the Owner
Trust level. Also indicate expired and revoked keys, and revoked UIDs.
- The "Content-Disposition: attachment" flag in PGP/MIME signed messages
has been removed. It was confusing for cetain MUAs.
+ A new version of the RSSyl plugin, completely redesigned and rewritten.
+ The results of TAB address completion in the Compose window have
improved ordering.
+ Due to popular demand, use of the Up key in the message body in the
Compose window stops at the top of the message body and does not
continue up to the header fields. This reverts the behaviour introduced
in version 3.10.0.
+ In the Compose window, when navigating with the arrow keys, selecting,
and thus modifying, the Account selector is now prevented.
+ In the Compose window, a mnemonic (s) has been added to the Subject line.
+ The Queue folder is highlighted if there are messages in its sub-folders
and the tree is collapsed.
+ When sorting messages by 'thread date', clicking the 'Date' column
header will now toggle between ascending/descending and will not switch
to 'date' sorting.
+ A new QuickSearch filter has been added that searches a header's content
only.
+ A Reply-To field has been added to the main Template configuration.
+ The menubar can now be hidden, default hotkey: F12.
+ Fancy plugin: A user-controlled stylesheet can now be used.
+ Python plugin: Add flag attributes to MessageInfo object.
+ Python plugin: Make 'account' property of ComposeWindow read/write.
+ Libravatar plugin: a network timeout option has been added.
+ The tbird2claws.py script, for converting a Thunderbird mailbox to a
Claws Mail mailbox, now handles sub-directory recursion.
+ Updated translations


Patch Instructions:

To install this openSUSE Security Update use YaST online_update.
Alternatively you can run the command listed for your product:

- openSUSE 13.2:

zypper in -t patch openSUSE-2014-640

To bring your system up-to-date, use "zypper patch".


Package List:

- openSUSE 13.2 (i586 x86_64):

claws-mail-3.11.0-2.4.1
claws-mail-debuginfo-3.11.0-2.4.1
claws-mail-debugsource-3.11.0-2.4.1
claws-mail-devel-3.11.0-2.4.1

- openSUSE 13.2 (noarch):

claws-mail-lang-3.11.0-2.4.1


References:

http://support.novell.com/security/cve/CVE-2014-3566.html
https://bugzilla.suse.com/show_bug.cgi?id=903276


< Previous Next >
This Thread
  • No further messages