Ubuntu alert USN-8055-2 (evolution-data-server)
| From: | noreply+usn-bot--- via ubuntu-security-announce <ubuntu-security-announce@lists.ubuntu.com> | |
| To: | ubuntu-security-announce@lists.ubuntu.com | |
| Subject: | [USN-8055-2] Evolution Data Server vulnerability | |
| Date: | Mon, 01 Jun 2026 15:11:20 +0000 | |
| Message-ID: | <E1wU4IS-00015l-MG@lists.ubuntu.com> | |
| Cc: | noreply+usn-bot@canonical.com |
========================================================================== Ubuntu Security Notice USN-8055-2 June 01, 2026 evolution-data-server vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 20.04 LTS - Ubuntu 18.04 LTS Summary: Evolution Data Server could be made to remove files. Software Description: - evolution-data-server: Evolution suite data server Details: USN-8055-1 fixed a vulnerability in Evolution Data Server. This update provides the corresponding update for Ubuntu 18.04 LTS and Ubuntu 20.04 LTS. Original advisory details: It was discovered that Evolution Data Server incorrectly handled removing local cache files. An attacker could possibly use this issue to cause Evolution Data Server to remove arbitrary files. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 20.04 LTS evolution-data-server 3.36.5-0ubuntu1+esm1 Available with Ubuntu Pro Ubuntu 18.04 LTS evolution-data-server 3.28.5-0ubuntu0.18.04.3+esm1 Available with Ubuntu Pro After a standard system update you need to restart your session to make all the necessary changes. References: https://ubuntu.com/security/notices/USN-8055-2 https://ubuntu.com/security/notices/USN-8055-1 CVE-2026-2604
Attachment: signature.asc (type=application/pgp-signature)
-----BEGIN PGP SIGNATURE----- iQIzBAABCgAdFiEE+8neBLO2Hp/ppPlOcpJm3tlzhgEFAmodoF0ACgkQcpJm3tlz hgHwpRAAzub+IRgGDNp5cCxOeLH3DyMkG5M0ssddPJ+MLahVnWeha4EuMvK8tYJz HAkFJDJqytI0cw5XdRc+ObT3jBMmZceo4n/8AdYoauUWQEmyz3atsjMq+WNEBnXp 6EwI4NH3G8p1Q2zDJJVOWPiP1O8U1uiBBQYrBkQ75y/Ga9efdRn3SDMDxA3DizRS UBbVPihQ9S1HQY8oCa4Q7F2Ufjo2mEG173M/xy321qQdAUXh3GTdc5b+ZPzXh4NI s4vQ4q4wXB7lhU3tWSgH9pHauiEjUeNfqUO97VS1CR8uAlsUZncrcCZwFFG1AkYL 8w0CMZE8mHnmmUz1m8SVOPhcxXGPgG5zHLzzF60onc44Ri2ggv+Du2vpfkzSQSHi 8myF3ArWwl5fYyxOpWwzo9LTNFUJnwU6JykRP2qYpsiqQDs2tVFQGVXmJa1e7/bt kXaA6UmTE5WIUGdPkzIWTDgjVVrWu9kKdM9rL5Ozk0L7prFa13MOlu4q426oKgPX MQS3N9R3UMhQlDWMiw6e6caXDJKzbXipk0JdV/Z4bqDQKDZzwkBIqK9dU77gDu6F Bmsyld678CA0hKm7DfwrVdou/noDQs14izdY56MhBFONLvdESZ7jF56rStOR+A+v o6mUJbJ5OGgnHaJF9M0EiSKiiHgyUxqBU4f+Mc2aJfhLXYNojYQ= =OBS8 -----END PGP SIGNATURE-----
