PT-2026-86626 · Samsung · Escargot

·

CVE-2026-86315

·

Published

2026-09-07

·

Updated

2026-09-07

CVSS v3.1

6.2

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
An out-of-bounds write caused by numeric truncation Samsung Open Source Escargot on Linux x86-64 allows an attacker who can supply JavaScript for execution to corrupt native memory and crash the host process via a crafted class definition whose instance initialization entry count exceeds UINT16 MAX.
This issue affects Escargot: 5dc93606abd42b859045add05d704a038e197359.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-86315

Affected Products

Escargot