{"id":"UBUNTU-CVE-2026-42095","details":"bookserver in KDE Arianna before 26.04.1 allows attackers to read files over a socket connection by guessing a URL.","modified":"2026-05-20T16:25:42.919975124Z","published":"2026-04-24T15:16:00Z","upstream":["CVE-2026-42095"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-42095"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2026-42095"},{"type":"REPORT","url":"https://kde.org/info/security/advisory-20260424-1.txt"},{"type":"REPORT","url":"https://invent.kde.org/graphics/arianna/-/commit/485851d25de279a9d2711d3780443530e9851300"},{"type":"REPORT","url":"https://invent.kde.org/graphics/arianna/-/commit/3cd56fce103ab62887c5592827d78a1197cd926a"}],"affected":[{"package":{"name":"arianna","ecosystem":"Ubuntu:25.10","purl":"pkg:deb/ubuntu/arianna?arch=source&distro=questing"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["24.12.3-0ubuntu1","25.04.0-0ubuntu1","25.04.1-0ubuntu1","25.04.2-0ubuntu1","25.04.3-0ubuntu1","25.07.80-0ubuntu1","25.07.90-0ubuntu1","25.08.0-0ubuntu1","25.08.1-0ubuntu1"],"ecosystem_specific":{"binaries":[{"binary_version":"25.08.1-0ubuntu1","binary_name":"arianna"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-42095.json"}},{"package":{"name":"arianna","ecosystem":"Ubuntu:26.04:LTS","purl":"pkg:deb/ubuntu/arianna?arch=source&distro=resolute"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["25.08.1-0ubuntu1","25.08.2-0ubuntu1","25.08.3-0ubuntu1","25.11.80-0ubuntu1","25.11.90-0ubuntu1","25.12.0-0ubuntu1","25.12.1-0ubuntu1","25.12.1-0ubuntu2","25.12.2-0ubuntu1","25.12.3-0ubuntu1"],"ecosystem_specific":{"binaries":[{"binary_name":"arianna","binary_version":"25.12.3-0ubuntu1"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-42095.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N"},{"type":"Ubuntu","score":"medium"}]}