CVE-2026-107733: Sumatrapdfreader Sumatrapdf
Medium severity, CVSS 6.8. EPSS: 0.1% chance of exploitation in the next 30 days.
SumatraPDF is a multi-format reader for Windows. In 3.6.1 and earlier, FrameOnCommand() handles CmdExec by passing a null current-tab pointer to RunWithExe(), which dereferences WindowTab::filePath. A local process in the same interactive Windows session, at an integrity level greater than or equal to SumatraPDF's under Windows UIPI, can dispatch CmdExec over DDE or WM_COPYDATA while no document tab is open, causing abrupt process termination and loss of unsaved state. No broader impact is claimed beyond the advisory-supported conditions. No fixed version is available as of this review.
Affected products
- Sumatrapdfreader Sumatrapdf: up to and including 3.6.1
Published 2026-10-08. Last modified 2026-10-08.