PT-2026-46171 · Samsung · Rlottie
CVSS v3.1
6.1
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H |
Name of the Vulnerable Software and Affected Versions
rlottie versions prior to eae37633fda13ac05b25c6c95aacea4bc33c80a3
Description
Samsung Open Source rlottie contains an issue involving uncontrolled recursion and the access of uninitialized pointers. This allows for pointer manipulation and the processing of oversized serialized data payloads.
Recommendations
Update to version eae37633fda13ac05b25c6c95aacea4bc33c80a3 or later.
Fix
Uncontrolled Recursion
Access of Uninitialized Pointer
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Rlottie