VYPR
Medium severity6.6NVD Advisory· Published Apr 22, 2026· Updated Apr 27, 2026

CVE-2026-6839

CVE-2026-6839

Description

Improper validation of STRING tensor offsets could allows malformed string metadata to trigger out of bounds access during constant tensor import in Samsung Open Source ONE Affected version is prior to commit 1.30.0.

Affected products

1
  • cpe:2.3:a:samsung:one:*:*:*:*:*:*:*:*
    Range: <1.30.0

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.