VDB
CVE-2026-47320
CVE-2026-47320
PUBLISHED
CVSS 6.1 MEDIUM
Reported by samsung.tv_appliance · Published June 4, 2026
Access of uninitialized pointer, Uncontrolled Recursion vulnerability in Samsung Open Source rlottie allows Pointer Manipulation, Oversized Serialized Data Payloads. This issue affects rlottie: before eae37633fda13ac05b25c6c95aacea4bc33c80a3.
Risk Scores
CVSS 3.1
6.1
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Samsung Open Source | rlottie | eae37633fda13ac05b25c6c95aacea4bc33c80a3 |
| Samsung Open Source | rlottie | eae37633fda13ac05b25c6c95aacea4bc33c80a3, eae37633fda13ac05b25c6c95aacea4bc33c80a3 |
Timeline
- Jun 4, 2026 CVE Published
- Jun 5, 2026 EPSS Score
- Jun 6, 2026 Coalition ESS Score
- Jun 7, 2026 Security Advisory
- Aug 7, 2026 EPSS Score