CVE-2026-96276: Flatpak: flatpak: arbitrary write in host context via flatpak build-init

Published Sep 23, 2026
·
Updated

If a malicious SDK container declares an extension point with a crafted directory path, and a developer runs flatpak build-init --writable-sdk --sdk-extension with that SDK, attacker-chosen files could be written outside the working directory, since the target path is resolved via a function that allows .. traversal.

Affected Software

1 affected component
Flatpak Flatpak

Event History

Sep 23, 2026
CVE Published
via MITRE·03:01 PM
Data Sourced
via MITRE·03:01 PM
DescriptionWeakness
Data Sourced
via NVD·03:17 PM
DescriptionSeverityWeakness

Frequently Asked Questions

1

Who is exposed to this issue?

Developers who run flatpak build-init with both --writable-sdk and --sdk-extension against a malicious SDK container are exposed. The impact is an arbitrary file write in the host context outside the intended working directory.

2

What does an attacker need to exploit it?

An attacker needs to provide or induce use of an SDK container that declares an extension point with a crafted directory path. Exploitation also requires the developer to invoke flatpak build-init with --writable-sdk and --sdk-extension using that SDK.

3

Is a normal flatpak build-init invocation affected?

The described condition specifically requires use of both --writable-sdk and --sdk-extension. The available information does not indicate that invocations without those options are affected.

4

What can be done before a fix is available?

Do not use untrusted SDK containers with flatpak build-init when enabling --writable-sdk and --sdk-extension. Restrict SDK sources to trusted containers until the issue is remediated.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203