This update for evolution-data-server fixes the following issues:
- CVE-2026-2604: Canonicalize path before local cache file removal. (bsc#1258307)
Patch instructions:
To install this openSUSE security update use the suse recommended installation methods
like YaST online_update or "zypper patch".
Alternatively you can run the command listed for your product:
- openSUSE Leap 16.0
zypper in -t patch openSUSE-Leap-16.0-844=1
- openSUSE Leap 16.0:
evolution-data-server-3.56.2-160000.3.1
evolution-data-server-devel-3.56.2-160000.3.1
evolution-data-server-lang-3.56.2-160000.3.1
libcamel-1_2-64-3.56.2-160000.3.1
libebackend-1_2-11-3.56.2-160000.3.1
libebook-1_2-21-3.56.2-160000.3.1
libebook-contacts-1_2-4-3.56.2-160000.3.1
libecal-2_0-3-3.56.2-160000.3.1
libedata-book-1_2-27-3.56.2-160000.3.1
libedata-cal-2_0-2-3.56.2-160000.3.1
libedataserver-1_2-27-3.56.2-160000.3.1
libedataserverui-1_2-4-3.56.2-160000.3.1
libedataserverui4-1_0-0-3.56.2-160000.3.1
typelib-1_0-Camel-1_2-3.56.2-160000.3.1
typelib-1_0-EBackend-1_2-3.56.2-160000.3.1
typelib-1_0-EBook-1_2-3.56.2-160000.3.1
typelib-1_0-EBookContacts-1_2-3.56.2-160000.3.1
typelib-1_0-ECal-2_0-3.56.2-160000.3.1
typelib-1_0-EDataBook-1_2-3.56.2-160000.3.1
typelib-1_0-EDataCal-2_0-3.56.2-160000.3.1
typelib-1_0-EDataServer-1_2-3.56.2-160000.3.1
typelib-1_0-EDataServerUI-1_2-3.56.2-160000.3.1
typelib-1_0-EDataServerUI4-1_0-3.56.2-160000.3.1
* bsc#1258307
References:
* https://www.suse.com/security/cve/CVE-2026-2604.html
Get the latest Linux and open source security news straight to your inbox.