Buffer overflow in the LZX decompression in CHM Lib (chmlib) 0.35, as used in products such as KchmViewer, has unknown impact and attack vectors.
http://www.securityfocus.com/bid/15338
http://www.debian.org/security/2005/dsa-886
http://secunia.com/advisories/17775
http://secunia.com/advisories/17494
http://secunia.com/advisories/17325
http://mail-index.netbsd.org/pkgsrc-changes/2005/09/12/0010.html