Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-2604

23
FAUCET Score

A flaw was found in evolution-data-server. Inconsistent comparison logic in the addressbook file backend allows a Flatpak application with D-Bus access to craft a malicious URI containing directory traversal sequences. This URI is stored without proper validation during contact creation or modification. Later, during contact deletion, the URI is processed with a less strict check, leading to the deletion of arbitrary files on the host filesystem. This could potentially include critical Flatpak override files.

First published: Jun 16, 2026Last modified: Jun 16, 2026

Impacted Technologies

VendorProductVersion(s)CPE
Red HatRed Hat Enterprise Linux 10
All Versions ImpactedCNA affecteddefault affected
Red HatRed Hat Enterprise Linux 6
All Versions ImpactedCNA affecteddefault affected
Red HatRed Hat Enterprise Linux 7
All Versions ImpactedCNA affecteddefault affected
Red HatRed Hat Enterprise Linux 8
All Versions ImpactedCNA affecteddefault affected
Red HatRed Hat Enterprise Linux 9
All Versions ImpactedCNA affecteddefault affected

CVSS Data

CVSS version used by this source: 3.1

5.6MEDIUM

CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:H/A:L

Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
NONE
Integrity Impact
HIGH
Availability Impact
LOW
Exploitability Score
1.3
Impact Score
4.2
CvssVersion
3.1

Exploit Intelligence

EPSS Score
0.19%
Probability of exploitation in next 30 days
EPSS Percentile
8.9%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0019 is in the 47th percentile among its peer group of 382 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.

Media Mentions

The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (7)

ubuntupatch availablevia ubuntu_usn
Product: evolution-data-server (bionic)Fixed in: 3.28.5-0ubuntu0.18.04.3+esm1
ubuntupatch availablevia ubuntu_usn
Product: evolution-data-server (focal)Fixed in: 3.36.5-0ubuntu1+esm1
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 7Fixed in: evolution-data-server
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 10Fixed in: evolution-data-server
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 9Fixed in: evolution-data-server
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 8Fixed in: evolution-data-server
redhatvendor investigatingvia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: evolution-data-server

Vendor Advisories (2)

ubuntuUSN-8055-2

Evolution Data Server vulnerability

Jun 1, 2026
redhatCVE-2026-2604Moderate

evolution-data-server: Evolution Data Server: Arbitrary file deletion via inconsistent URI handling

Feb 16, 2026

References

gitlab.gnome.org / GNOME/evolution-data-server/-/work_items/627
lists.debian.org / debian-lts-announce/2026/03/msg00007.html
access.redhat.com / security/cve/CVE-2026-2604
bugzilla.redhat.com / show_bug.cgi
gitlab.gnome.org / GNOME/evolution-data-server/-/issues/627