CVE-2026-85084CWE-129CWE-787

CVE-2026-85084

Medium · published September 3, 2026

CVSS v3.1
6.3
EPSS
0%
Percentile
3.3
In the wild
Unconfirmed
What it is

Out-of-bounds Write and Improper Validation of Array Index vulnerability in Samsung Open Source TizenFX Samsung/TizenFX allows Overflow Buffers.

The record
Technical detail
CVSS v3.1
6.3 · MEDIUM
Vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:H/A:H
CVSS v4.0
Not supplied
EPSS
0.00136 · 3.3th percentile
Weaknesses
CWE-129 · Improper Validation of Array Index; CWE-787 · Out-of-bounds Write
Published
2026-09-03T17:06Z
References (2)
EPSS history
Timeline
  • 04 SEP 03:44Z
    EPSS moved — → 0%
    epss
  • 02 SEP 23:21Z
    Out-of-bounds write in TizenFX MediaBufferBase indexer setter due to missing bounds check
    cvelistv5