Heap Memory Corruption in SumatraPDF's CHM File Handling
CVE-2026-55586

6.6MEDIUM

Key Information:

Vendor
CVE Published:
20 August 2026

What is CVE-2026-55586?

A vulnerability in SumatraPDF, a versatile document reader for Windows, allows a specially crafted CHM file to exploit an issue in the LZX decompression algorithm. An attacker can supply malformed LZX Huffman code lengths that lead to heap memory corruption when the 'make_decode_table' function incorrectly processes the data. Specifically, the vulnerability occurs in the long-code branch where new internal nodes may be written without validating the canonical Huffman table. This results in overwriting memory beyond the designated boundaries, impacting the stability and security of the application. Although arbitrary code execution has not been demonstrated, the potential for exploitation remains a significant concern. As of now, there is no patched version available.

Affected Version(s)

sumatrapdf <= 3.6.1rel

References

CVSS V3.1

Score:
6.6
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
High
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.