USN-8055-2

Source
https://ubuntu.com/security/notices/USN-8055-2
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8055-2.json
JSON Data
https://api.osv.dev/v1/vulns/USN-8055-2
Upstream
Related
Published
2026-06-01T14:51:47Z
Modified
2026-06-22T09:31:20.674741056Z
Summary
evolution-data-server vulnerability
Details

USN-8055-1 fixed a vulnerability in Evolution Data Server. This update provides the corresponding update for Ubuntu 18.04 LTS and Ubuntu 20.04 LTS.

Original advisory details:

It was discovered that Evolution Data Server incorrectly handled removing local cache files. An attacker could possibly use this issue to cause Evolution Data Server to remove arbitrary files.

References

Affected packages

Ubuntu:Pro:18.04:LTS / evolution-data-server

Package

Name
evolution-data-server
Purl
pkg:deb/ubuntu/evolution-data-server?arch=source&distro=esm-infra%2Fbionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.28.5-0ubuntu0.18.04.3+esm1

Affected versions

3.*
3.26.1-1ubuntu1
3.26.2-1ubuntu1
3.26.2.1-1ubuntu1
3.26.2.1-1ubuntu3
3.26.3-1ubuntu1
3.26.5-1ubuntu3
3.27.90-1ubuntu1
3.28.0-1ubuntu1
3.28.0-2ubuntu1
3.28.0-2ubuntu2
3.28.1-1ubuntu1
3.28.3-0ubuntu0.18.04.1
3.28.5-0ubuntu0.18.04.1
3.28.5-0ubuntu0.18.04.2
3.28.5-0ubuntu0.18.04.3

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "evolution-data-server",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "evolution-data-server-common",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "evolution-data-server-online-accounts",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "evolution-data-server-tests",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "gir1.2-camel-1.2",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "gir1.2-ebook-1.2",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "gir1.2-ebookcontacts-1.2",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "gir1.2-edataserver-1.2",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "gir1.2-edataserverui-1.2",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "libcamel-1.2-61",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "libebackend-1.2-10",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "libebook-1.2-19",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "libebook-contacts-1.2-2",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "libecal-1.2-19",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "libedata-book-1.2-25",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "libedata-cal-1.2-28",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "libedataserver-1.2-23",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        },
        {
            "binary_name": "libedataserverui-1.2-2",
            "binary_version": "3.28.5-0ubuntu0.18.04.3+esm1"
        }
    ],
    "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8055-2.json"
cves_map
{
    "ecosystem": "Ubuntu:Pro:18.04:LTS",
    "cves": [
        {
            "id": "CVE-2026-2604",
            "severity": [
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:L",
                    "type": "CVSS_V3"
                },
                {
                    "score": "medium",
                    "type": "Ubuntu"
                }
            ]
        }
    ]
}

Ubuntu:Pro:20.04:LTS / evolution-data-server

Package

Name
evolution-data-server
Purl
pkg:deb/ubuntu/evolution-data-server?arch=source&distro=esm-infra%2Ffocal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.36.5-0ubuntu1+esm1

Affected versions

3.*
3.34.1-1
3.34.1-1build1
3.34.1-1ubuntu1
3.34.1-2
3.34.3-2
3.35.91-1
3.35.92-1
3.36.0-1
3.36.1-1
3.36.1-2
3.36.2-0ubuntu1
3.36.3-0ubuntu1
3.36.3-0ubuntu1.1
3.36.4-0ubuntu1
3.36.5-0ubuntu1

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "evolution-data-server",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "evolution-data-server-common",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "evolution-data-server-tests",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "gir1.2-camel-1.2",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "gir1.2-ebackend-1.2",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "gir1.2-ebook-1.2",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "gir1.2-ebookcontacts-1.2",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "gir1.2-ecal-2.0",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "gir1.2-edatabook-1.2",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "gir1.2-edatacal-2.0",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "gir1.2-edataserver-1.2",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "gir1.2-edataserverui-1.2",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "libcamel-1.2-62",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "libebackend-1.2-10",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "libebook-1.2-20",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "libebook-contacts-1.2-3",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "libecal-2.0-1",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "libedata-book-1.2-26",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "libedata-cal-2.0-1",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "libedataserver-1.2-24",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        },
        {
            "binary_name": "libedataserverui-1.2-2",
            "binary_version": "3.36.5-0ubuntu1+esm1"
        }
    ],
    "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-8055-2.json"
cves_map
{
    "ecosystem": "Ubuntu:Pro:20.04:LTS",
    "cves": [
        {
            "id": "CVE-2026-2604",
            "severity": [
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:L",
                    "type": "CVSS_V3"
                },
                {
                    "score": "medium",
                    "type": "Ubuntu"
                }
            ]
        }
    ]
}