rootpwn

medium · CVSS v3 4.3 · CVSS v4 5.3 · EPSS 0.00435

CVE-2026-104982

A path‑traversal flaw in Linux Mint Xreader’s EPUB handler allows remote attackers to read arbitrary files. The issue exists in versions up

Overview

A path‑traversal flaw in Linux Mint Xreader’s EPUB handler allows remote attackers to read arbitrary files. The issue exists in versions up to 4.6.5 and has been publicly exploited. Upgrading to 4.6.6 or later mitigates the vulnerability.

Description

A flaw has been found in Linux Mint Xreader up to 4.6.5. This issue affects the function setup_document_content_list/g_strdup_printf of the file backend/epub/epub-document.c of the component EPUB File Handler. This manipulation causes path traversal. The attack is possible to be carried out remotely. The exploit has been published and may be used. Upgrading to version 4.6.6 is capable of addressing this issue. Patch name: a5aecea074e8564b7a22f1ce054b31ec862974b7. It is advisable to upgrade the affected component. One of the project maintainers explains, that "EPUB support was removed from Xreader and reimplemented in Xepub".

Impact

The vulnerability can be used to read sensitive files on the host, compromising confidentiality. If an attacker can supply a crafted EPUB file, they may gain access to system configuration or user data. The flaw does not directly alter data, but it can expose information that could aid further attacks.

Remediation

Apply the official patch by upgrading Xreader to version 4.6.6 or later. If an upgrade is not immediately possible, disable EPUB support in Xreader or remove the application entirely. Monitor system logs for anomalous file access patterns related to EPUB processing.

Risk context

With a CVSS v3 score of 4.3 and an EPSS of 0.00435, the risk is moderate but not urgent. Defenders should prioritize the update in a routine patch cycle.

Affected products

  • Linux Mint Xreader 4.6.5
  • Linux Mint Xreader <4.6.5

Scores

Severity
medium
CVSS v2
5
CVSS v3
4.3
CVSS v4
5.3
EPSS
0.00435

path-traversal epub xreader linux-mint medium remote file-access

← All CVEs