Improper validation of STRING tensor offsets could allows malformed string metadata to trigger out of bounds access during constant tensor import in Samsung Open Source ONE
Affected version is prior to commit 1.30.0.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://github.com/Samsung/ONE/pull/16481 |
|
History
Wed, 22 Apr 2026 13:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 22 Apr 2026 12:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Samsung Open Source
Samsung Open Source one |
|
| Vendors & Products |
Samsung Open Source
Samsung Open Source one |
Wed, 22 Apr 2026 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Improper Validation of STRING Tensor Offsets Leading to Out‑of‑Bounds Access |
Wed, 22 Apr 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper validation of STRING tensor offsets could allows malformed string metadata to trigger out of bounds access during constant tensor import in Samsung Open Source ONE Affected version is prior to commit 1.30.0. | |
| Weaknesses | CWE-1284 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: samsung.tv_appliance
Published: 2026-04-22T06:07:06.857Z
Updated: 2026-04-22T12:30:25.364Z
Reserved: 2026-04-22T06:03:50.823Z
Link: CVE-2026-6839
Updated: 2026-04-22T12:30:06.852Z
Status : Awaiting Analysis
Published: 2026-04-22T07:16:14.957
Modified: 2026-04-22T21:23:52.620
Link: CVE-2026-6839
No data.