Buffer Overflow Issue in SumatraPDF Reader by SumatraPDF
CVE-2026-107738
6.8MEDIUM
What is CVE-2026-107738?
The SumatraPDF reader, a versatile application for Windows, contains a vulnerability in its ChmFile::GetCharZ() function. In versions 3.6.1 and earlier, the function fails to validate certain file-controlled unsigned string offsets, resulting in negative values being interpreted as signed integers. This oversight allows the function to read beyond the designated /#STRINGS buffer, which can lead to unexpected application crashes. No remediation has been provided, and users are advised to remain cautious when using affected versions.
Affected Version(s)
sumatrapdf <= 3.6.1
