Out-of-bounds read vulnerability in Samsung Open Source rlottie allows Overread Buffers.
This issue affects rlottie: before 223a2a41ba4f462e4abe767bebba49a366c9b9fd.
{
"cna_assigner": "samsung.tv_appliance",
"cwe_ids": [
"CWE-125"
],
"osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/10xxx/CVE-2026-10305.json"
}"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-10305.json"
[
{
"deprecated": false,
"digest": {
"line_hashes": [
"274288967480830511413807786097356319304",
"126315735831272201683231722990300848063",
"76524509792597982776413949421475294605",
"263261035949464807599291874094356103697",
"135408623554624872490738770216783124308",
"272821083931491110695268745452978031478",
"260254251047917720035417533899440276507"
],
"threshold": 0.9
},
"id": "CVE-2026-10305-0dba121a",
"signature_type": "Line",
"signature_version": "v1",
"source": "https://github.com/samsung/rlottie/commit/223a2a41ba4f462e4abe767bebba49a366c9b9fd",
"target": {
"file": "src/vector/vdrawhelper.cpp"
}
},
{
"deprecated": false,
"digest": {
"function_hash": "81589220276744689586366368277521025282",
"length": 1210
},
"id": "CVE-2026-10305-3a698171",
"signature_type": "Function",
"signature_version": "v1",
"source": "https://github.com/samsung/rlottie/commit/223a2a41ba4f462e4abe767bebba49a366c9b9fd",
"target": {
"file": "src/vector/vdrawhelper.cpp",
"function": "VGradientCache::generateGradientColorTable"
}
}
]
"2026-10-08T07:06:30Z"