CVE-2026-96282
Received Received - Intake

Flatpak Extension Filesystem Probing and Directory Listing Disclosure

Vulnerability report for CVE-2026-96282, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-27

Last updated on: 2026-09-27

Assigner: redhat-SADP

Description

A malicious Flatpak extension can probe the host filesystem to determine what files and directories exist at arbitrary paths, and host directory listings can be disclosed to sandboxed applications using the extension. Additionally, unvalidated extension metadata can cause extension content to be mounted at unintended locations inside the sandbox.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-27
Last Modified
2026-09-27
Generated
2026-09-28
AI Q&A
2026-09-28
EPSS Evaluated
N/A
NVD

Affected Vendors & Products

Currently, no data is known.

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-59 The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability involves a malicious Flatpak extension that can scan the host filesystem to check for the existence of files and directories at any path. It also allows sandboxed applications using the extension to receive directory listings from the host system. Additionally, unvalidated metadata in the extension can cause its content to be mounted at incorrect locations within the sandbox.

Detection Guidance

This vulnerability involves Flatpak extensions probing the host filesystem or mounting content at unintended locations. Detection requires checking Flatpak extension configurations and sandboxed application behavior. Review installed Flatpak extensions with 'flatpak list --app' and inspect their permissions. Monitor filesystem access patterns using tools like 'auditd' or 'strace' on Flatpak processes. Check for unexpected mount points inside sandboxes with 'flatpak info <app>' and verify extension metadata integrity.

Impact Analysis

An attacker could exploit this to gather information about your system's file structure, potentially identifying sensitive files or directories. This could lead to further attacks, such as accessing or manipulating files if combined with other vulnerabilities.

Compliance Impact

This vulnerability could potentially impact compliance with GDPR and HIPAA by enabling unauthorized access to filesystem information. GDPR requires protecting personal data, and HIPAA mandates safeguarding protected health information. The ability to probe host filesystems may lead to unauthorized data exposure, violating confidentiality requirements in these regulations.

Mitigation Strategies

Update Flatpak to the latest version to ensure the vulnerability is patched. Review and restrict Flatpak extension permissions to minimize filesystem probing risks. Monitor for unusual directory access patterns or unexpected extension behavior.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-96282. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart