Integer overflow in output tensor copy size calculation in Samsung Open Source ONE could cause incorrect copy length and memory corruption for oversized tensors. Affected version is prior to commit 1.30.0.
https://github.com/Samsung/ONE/pull/16481
Source: Mitre, NVD
Published: 2026-04-22
Updated: 2026-04-22
Base Score: 6.1
Vector: CVSS2#AV:L/AC:L/Au:N/C:P/I:P/A:C
Severity: Medium
Base Score: 6.6
Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:H