Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2025-48172


CHMLib through 2bef8d0, as used in SumatraPDF and other products, has a chm_lib.c _chm_decompress_block integer overflow. There is a resultant heap-based buffer overflow in _chm_fetch_bytes.


Published

2025-07-04T13:15:25.453

Last Modified

2025-07-08T16:18:53.607

Status

Awaiting Analysis

Source

[email protected]

Severity

CVSSv3.1: 5.6 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-190

Affected Vendors & Products

-


References