CVE-2026-92259
Received Received - Intake

Integer Overflow in Samsung Escargot Leads to Heap Buffer Overflow

Vulnerability report for CVE-2026-92259, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-15

Last updated on: 2026-09-15

Assigner: Samsung TV & Appliance

Description

Integer overflow or wraparound vulnerability in Samsung Opensource Escargot allows attackers with write access to the bytecode-cache directory to cause a heap-based buffer overflow and denial of service via a crafted cache file. This issue affects Escargot: ac94df78493ee6fede286620d94f724e46b4d238.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-15
Last Modified
2026-09-15
Generated
2026-10-06
AI Q&A
2026-09-16
EPSS Evaluated
2026-10-04
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
samsung escargot *

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-190 The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability is an integer overflow or wraparound issue in Samsung Opensource Escargot. Attackers with write access to the bytecode-cache directory can exploit it by creating a crafted cache file to trigger a heap-based buffer overflow, leading to denial of service.

Impact Analysis

If exploited, this vulnerability could cause a denial of service, making the affected system or application unavailable. It requires attackers to have write access to specific directories, limiting the scope of potential impact.

Mitigation Strategies

Restrict write access to the bytecode-cache directory to trusted users only. Regularly audit cache files for unexpected modifications or large sizes that could indicate exploitation attempts.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-92259. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart