CVE-2026-6839

Improper validation of STRING tensor offsets could allows malformed string metadata to trigger out of bounds access during constant tensor import in Samsung Open Source ONE Affected version is prior to commit 1.30.0.
References
Link Resource
https://github.com/Samsung/ONE/pull/16481 Issue Tracking Patch
Configurations

Configuration 1 (hide)

cpe:2.3:a:samsung:one:*:*:*:*:*:*:*:*

History

27 Apr 2026, 18:22

Type Values Removed Values Added
CPE cpe:2.3:a:samsung:one:*:*:*:*:*:*:*:*
First Time Samsung one
Samsung
References () https://github.com/Samsung/ONE/pull/16481 - () https://github.com/Samsung/ONE/pull/16481 - Issue Tracking, Patch

22 Apr 2026, 07:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-04-22 07:16

Updated : 2026-04-27 18:22


NVD link : CVE-2026-6839

Mitre link : CVE-2026-6839

CVE.ORG link : CVE-2026-6839


JSON object : View

Products Affected

samsung

  • one
CWE
CWE-1284

Improper Validation of Specified Quantity in Input