EIP-2026-115766

PRE-CVE

Microsoft Reader 2.1.1.3143 - Integer Overflow (2)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-115766. PoCs published by Luigi Auriemma.

AI-analyzed exploit summary This exploit demonstrates an integer overflow vulnerability in Microsoft Reader, leading to a heap overflow via controlled memmove operations. The PoC manipulates specific bytes in a LIT file to trigger the overflow, potentially allowing arbitrary code execution.

Description

Microsoft Reader 2.1.1.3143 - Integer Overflow (2)

Exploits (1)

exploitdb WORKING POC
by Luigi Auriemma · textdoswindows
https://www.exploit-db.com/exploits/17162

This exploit demonstrates an integer overflow vulnerability in Microsoft Reader, leading to a heap overflow via controlled memmove operations. The PoC manipulates specific bytes in a LIT file to trigger the overflow, potentially allowing arbitrary code execution.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Microsoft Reader <= 2.1.1.3143 (PC version) and <= 2.6.1.7169 (Origami version)
No auth needed
Prerequisites: A crafted LIT file with manipulated bytes to trigger the integer overflow
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026