[ubuntu/jammy-security] evolution-data-server 3.44.4-0ubuntu1.2 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Mon Feb 23 12:39:46 UTC 2026


evolution-data-server (3.44.4-0ubuntu1.2) jammy-security; urgency=medium

  * SECURITY UPDATE: Insecure local cache file removal
    - debian/patches/CVE-2026-2604.patch: canonicalize path before local
      cache file removal in
      src/addressbook/backends/file/e-book-backend-file.c,
      src/addressbook/libedata-book/e-book-meta-backend.c,
      src/calendar/libedata-cal/e-cal-cache.c,
      src/libedataserver/e-data-server-util.c,
      src/libedataserver/e-data-server-util.h,
      tests/libedataserver/libedataserver-test.c.
    - debian/libedataserver-1.2-26.symbols: added new symbol.
    - CVE-2026-2604

Date: 2026-02-18 20:02:15.526916+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/evolution-data-server/3.44.4-0ubuntu1.2
-------------- next part --------------
Sorry, changesfile not available.


More information about the jammy-changes mailing list