Ahhh this one looks much better. For every test i make, i send me a fresh set of mails. For me, this latest one looks really good.
BTW: What makes me a little bit wonder is, that in the available google sheet, the Gmail App (Android) is listed as "not affected" for all terms of this issue. Nor spoofing, nor code injection. But if i test it here, i see that it is at least affected for spoofing which isn't fixed for the Gmail App. Ohh and they don't have IMAP/Idle support? What? Stupid client.
Additionally, i have received today a update for the build in Samsung Mail App on my phone. First thought was "hey they have seen the vulnerability and have fixed them to, great!".... But i was wrong... no fix...
So the only fixed client seems to be currently AquaMail. Many Thx for the fast fix. Now the only thing what i miss is again implementation of PGP/Mime. I love this App.