Home

Description

Integer overflow in output tensor copy size calculation in Samsung Open Source ONE could cause incorrect copy length and memory corruption for oversized tensors. Affected version is prior to commit 1.30.0.

PUBLISHED Reserved 2026-04-13 | Published 2026-04-22 | Updated 2026-04-26 | Assigner samsung.tv_appliance




MEDIUM: 6.6CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H

Problem types

CWE-190 Integer overflow or wraparound

Product status

Default status
unaffected

1.30.0
affected

References

github.com/Samsung/ONE/pull/16481

cve.org (CVE-2026-40450)

nvd.nist.gov (CVE-2026-40450)

Download JSON