CVE-2026-47318: Buffer Overflow
Published Jun 4, 2026
·Updated
Last updated 20 July 2026
Other sources
Stack-based buffer overflow vulnerability in Samsung Open Source rlottie allows Overflow Buffers.
— Launchpad
Affected Software
2 affected componentsFixes available
Samsung rLottie<ce72b35a7ad0dded03051d3aa0ef75321c3bd035
debian/rlottie<=0.1+dfsg-2
0.1+dfsg-2+deb11u20.1+dfsg-4+deb12u20.1+dfsg-4.2+deb13u20.1+dfsg-5
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/rlottieto a version that resolves this vulnerability.Fixed in 0.1+dfsg-2+deb11u2Fixed in 0.1+dfsg-4+deb12u2Fixed in 0.1+dfsg-4.2+deb13u2Fixed in 0.1+dfsg-5 - Upgrade
Upgrade
Samsung Open Source rlottieto a version that resolves this vulnerability.Fixed in ce72b35a7ad0dded03051d3aa0ef75321c3bd035
Event History
Jun 4, 2026
CVE Published
via MITRE·09:43 AM
Data Sourced
via MITRE·09:43 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:16 AM
DescriptionSeverityWeakness
Jul 21, 2026
Data Sourced
via Ubuntu·04:09 PM
RemedyDescriptionSeverityAffected Software
Data Sourced
via Launchpad·04:11 PM
Description
Data Sourced
via Debian·04:11 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-47318?
The severity of CVE-2026-47318 is medium with a score of 6.1.
2
How do I fix CVE-2026-47318?
To fix CVE-2026-47318, update the rlottie software to the latest version that addresses this vulnerability.
3
What type of vulnerability is CVE-2026-47318?
CVE-2026-47318 is a stack-based buffer overflow vulnerability.
4
Which software is affected by CVE-2026-47318?
CVE-2026-47318 affects the Samsung Open Source rlottie software.
5
When was CVE-2026-47318 published?
CVE-2026-47318 was published on June 4, 2026.