CVE-2026-41667

Source
https://cve.org/CVERecord?id=CVE-2026-41667
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-41667.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2026-41667
Published
2026-04-22T05:57:28Z
Modified
2026-08-12T03:51:16Z
Severity
  • 6.6 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H CVSS Calculator
Summary
[none]
Details

Integer overflow in constant tensor data size calculation in Samsung Open Source ONE could cause incorrect buffer sizing for large constant nodes. Affected version is prior to commit 1.30.0.

Database specific
{
    "cna_assigner": "samsung.tv_appliance",
    "cwe_ids": [
        "CWE-190"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/41xxx/CVE-2026-41667.json"
}
References

Affected packages

Git / github.com/samsung/one

Affected ranges

Type
GIT
Repo
https://github.com/samsung/one
Events
Database specific
Show details
{
    "cpe": "cpe:2.3:a:samsung:one:*:*:*:*:*:*:*:*",
    "extracted_events": [
        {
            "introduced": "1.30.0"
        },
        {
            "last_affected": "1.30.0"
        },
        {
            "introduced": "0"
        },
        {
            "fixed": "1.30.0"
        }
    ],
    "source": [
        "AFFECTED_FIELD",
        "CPE_RANGE"
    ]
}

Affected versions

1.*
1.30.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-41667.json"