EIP-2026-117494

PRE-CVE

Microsoft HTML Help 6.1 - Local Stack Overflow

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-117494. PoCs published by Luigi Auriemma.

AI-analyzed exploit summary This is a detailed technical writeup by Luigi Auriemma describing a stack overflow vulnerability in Microsoft HTML Help (itss.dll) caused by improper handling of decompressed LZX chunks in CHM files. The writeup includes a step-by-step guide to reproduce the vulnerability and a proof-of-concept CHM file.

Description

Microsoft HTML Help 6.1 - Local Stack Overflow

Exploits (1)

exploitdb WRITEUP VERIFIED
by Luigi Auriemma · textlocalwindows
https://www.exploit-db.com/exploits/17158

This is a detailed technical writeup by Luigi Auriemma describing a stack overflow vulnerability in Microsoft HTML Help (itss.dll) caused by improper handling of decompressed LZX chunks in CHM files. The writeup includes a step-by-step guide to reproduce the vulnerability and a proof-of-concept CHM file.

Classification
Writeup 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Microsoft HTML Help <= 6.1
No auth needed
Prerequisites: Microsoft HTML Help Workshop to create a malformed CHM file · Hex editor to modify the CHM file
devstral-2 · analyzed Feb 19, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026