PT-2026-34256 · Samsung · Open Source One

Published

2026-04-22

·

Updated

2026-04-23

·

CVE-2026-40449

CVSS v3.1

6.6

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H
Name of the Vulnerable Software and Affected Versions Samsung Open Source ONE versions prior to 1.30.0
Description An integer overflow in the buffer size calculation can lead to out of bounds memory access when the software handles large tensors.
Recommendations Update to version 1.30.0 or later.

Fix

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-40449

Affected Products

Open Source One