Buffer Overflow Issue in SumatraPDF Reader by SumatraPDF
CVE-2026-107738

6.8MEDIUM

Key Information:

Vendor
CVE Published:
8 October 2026

What is CVE-2026-107738?

The SumatraPDF reader, a versatile application for Windows, contains a vulnerability in its ChmFile::GetCharZ() function. In versions 3.6.1 and earlier, the function fails to validate certain file-controlled unsigned string offsets, resulting in negative values being interpreted as signed integers. This oversight allows the function to read beyond the designated /#STRINGS buffer, which can lead to unexpected application crashes. No remediation has been provided, and users are advised to remain cautious when using affected versions.

Affected Version(s)

sumatrapdf <= 3.6.1

References

CVSS V4

Score:
6.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.