Popular PGP Email add-on Enigmail addresses security gaps


I've been using enigmail for years but the recent update to 1.7.2 made it unusable.

Besides being suddenly very slow, it is now saving *all* drafts as encrypted even the one sent to people not using PGP. I don't know what's going on, but the end result seems to be that if the mail I'm writing has embedded images (*not* distant online images, just inline in the flow of the text), as soon as it is auto-saved in the draft folder (after 2-3 minutes), the inline images become "broken" (white square with dead link symbol).

The solution I've seen so far ? don't use html in emails, just plain text. But that doesn't fit very well in my workflow of sending inline graphs with comments around.

I downgraded to 1.7 since I'm don't feel impacted by the bugs (I never used the encryption, only the signing) and it's working fine. I'll try to fill a bug whenever I've time.

Sorry for the Friday morning's rant ... seriously :-)


