Integer overflow in output tensor copy size calculation in Samsung Open Source ONE could cause incorrect copy length and memory corruption for oversized tensors.
Affected version is prior to commit 1.30.0.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://github.com/Samsung/ONE/pull/16481 |
|
History
Wed, 22 Apr 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 22 Apr 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Samsung Open Source
Samsung Open Source one |
|
| Vendors & Products |
Samsung Open Source
Samsung Open Source one |
Wed, 22 Apr 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Integer Overflow Causing Memory Corruption in Samsung ONE Tensor Copy |
Wed, 22 Apr 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Integer overflow in output tensor copy size calculation in Samsung Open Source ONE could cause incorrect copy length and memory corruption for oversized tensors. Affected version is prior to commit 1.30.0. | |
| Weaknesses | CWE-190 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: samsung.tv_appliance
Published: 2026-04-22T05:53:10.536Z
Updated: 2026-04-22T12:36:32.206Z
Reserved: 2026-04-13T04:23:34.943Z
Link: CVE-2026-40450
Updated: 2026-04-22T12:36:24.958Z
Status : Awaiting Analysis
Published: 2026-04-22T07:16:13.553
Modified: 2026-04-22T21:23:52.620
Link: CVE-2026-40450
No data.