CVE-2026-104982
Received Received - Intake

Path Traversal in Linux Mint Xreader EPUB Handler

Vulnerability report for CVE-2026-104982, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-10-03

Last updated on: 2026-10-03

Assigner: VulDB

Description

A flaw has been found in Linux Mint Xreader up to 4.6.5. This issue affects the function setup_document_content_list/g_strdup_printf of the file backend/epub/epub-document.c of the component EPUB File Handler. This manipulation causes path traversal. The attack is possible to be carried out remotely. The exploit has been published and may be used. Upgrading to version 4.6.6 is capable of addressing this issue. Patch name: a5aecea074e8564b7a22f1ce054b31ec862974b7. It is advisable to upgrade the affected component. One of the project maintainers explains, that "EPUB support was removed from Xreader and reimplemented in Xepub".

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-10-03
Last Modified
2026-10-03
Generated
2026-10-03
AI Q&A
2026-10-03
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 6 associated CPEs
Vendor Product Version / Range
linux_mint xreader 4.6.3
linux_mint xreader to 4.6.5 (inc)
linux_mint xreader 4.6.6
linuxmint xreader to 4.6.5 (inc)
linuxmint xreader 4.6.6
linuxmint xreader 4.6.3

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-22 The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is a path traversal flaw in Linux Mint Xreader up to version 4.6.5. It exists in the EPUB file handler component, specifically in the function setup_document_content_list/g_strdup_printf of backend/epub/epub-document.c. The issue allows attackers to craft malicious EPUB files that can read arbitrary local files on the system by exploiting unvalidated path concatenation. The attack can be executed remotely by tricking a user into opening a specially crafted EPUB file. The vulnerability has been patched in version 4.6.6, where EPUB support was removed entirely and moved to a separate application called Xepub.

Detection Guidance

To detect this vulnerability, check if Xreader version 4.6.5 or earlier is installed on your system. Run 'xreader --version' to verify the version. If the version is 4.6.5 or below, the system is vulnerable. Additionally, inspect any EPUB files opened with Xreader for malicious href attributes containing '../' sequences that could indicate path traversal attempts.

Impact Analysis

If exploited, this vulnerability allows an attacker to read any file accessible to the user running Xreader. This could include sensitive system files like /etc/passwd or user documents. An attacker would need to trick a user into opening a malicious EPUB file, which could be delivered via email or a malicious website. The impact is limited to file read access and does not allow file modification or code execution directly through this vulnerability.

Compliance Impact

This vulnerability could lead to unauthorized access to sensitive data, which may violate compliance requirements under GDPR (for personal data protection) and HIPAA (for protected health information). Organizations using affected versions of Xreader may face compliance violations if sensitive data is exposed through this flaw. The risk is particularly high for systems handling regulated data, as the vulnerability enables unauthorized file access without proper authentication.

Mitigation Strategies

Immediately upgrade Xreader to version 4.6.6 or later. Remove EPUB support by uninstalling Xreader or migrating to Xepub. If upgrading is not possible, avoid opening untrusted EPUB files in Xreader until the update is applied.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-104982. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart