Integer overflow in output tensor copy size calculation in Samsung Open Source ONE could cause incorrect copy length and memory corruption for oversized tensors.
Affected version is prior to commit 1.30.0.
Affected version is prior to commit 1.30.0.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://github.com/Samsung/ONE/pull/16481 |
|
History
Wed, 22 Apr 2026 07:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Integer Overflow Causing Memory Corruption in Samsung ONE Tensor Copy |
Wed, 22 Apr 2026 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Integer overflow in output tensor copy size calculation in Samsung Open Source ONE could cause incorrect copy length and memory corruption for oversized tensors. Affected version is prior to commit 1.30.0. | |
| Weaknesses | CWE-190 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: samsung.tv_appliance
Published:
Updated: 2026-04-22T05:53:10.536Z
Reserved: 2026-04-13T04:23:34.943Z
Link: CVE-2026-40450
No data.
Status : Received
Published: 2026-04-22T07:16:13.553
Modified: 2026-04-22T07:16:13.553
Link: CVE-2026-40450
No data.
OpenCVE Enrichment
Updated: 2026-04-22T07:30:11Z
Weaknesses