CVE-2026-49509: Medium severity Samsung OpenSource Escargot vulnerability
Published Sep 3, 2026
·Updated
Out-of-bounds read vulnerability in Samsung Opensource Escargot allows Overread Buffers.
This issue affects Escargot: 25648aef19187b3f87f4d9420b8d761453ad4630.
Affected Software
1 affected component
Samsung OpenSource Escargot=25648aef19187b3f87f4d9420b8d761453ad4630
Event History
Sep 3, 2026
CVE Published
via MITRE·11:03 PM
Data Sourced
via MITRE·11:03 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which deployments should be considered affected?
Deployments using Samsung OpenSource Escargot at revision 25648aef19187b3f87f4d9420b8d761453ad4630 should be considered affected. The provided data does not identify any affected version range beyond that revision.
2
What access and interaction are required for exploitation?
The CVSS vector indicates local access is required and the attacker does not need privileges. Exploitation also requires user interaction; the specific interaction is not provided.
3
What is the likely security impact if exploited?
The issue is rated medium with low confidentiality and low availability impact, and no integrity impact. It is an out-of-bounds read that can overread buffers.