{"id":"CVE-2026-82926","details":"NULL pointer dereference vulnerability in Samsung Open Source mTower allows Pointer Manipulation.\n\nThis issue affects mTower: before afef59aa6f55c5d5ebf9b14bc020bf1c2c37489a.","modified":"2026-10-08T07:15:24.062924664Z","published":"2026-09-01T10:21:04.912Z","database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/82xxx/CVE-2026-82926.json","cna_assigner":"samsung.tv_appliance","cwe_ids":["CWE-476"]},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/82xxx/CVE-2026-82926.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-82926"},{"type":"FIX","url":"https://github.com/Samsung/mTower/pull/248"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/samsung/mtower","events":[{"introduced":"0"},{"fixed":"afef59aa6f55c5d5ebf9b14bc020bf1c2c37489a"}]}],"database_specific":{"vanir_signatures":[{"deprecated":false,"digest":{"line_hashes":["44225718791052206932855531126596243073","93525357806616505471940280553651383695","161660072184819759070418933852311450057"],"threshold":0.9},"id":"CVE-2026-82926-43d7b752","signature_type":"Line","signature_version":"v1","source":"https://github.com/samsung/mtower/commit/afef59aa6f55c5d5ebf9b14bc020bf1c2c37489a","target":{"file":"tee/kernel/tee_ta_manager.c"}},{"id":"CVE-2026-82926-5da1207b","signature_type":"Line","signature_version":"v1","source":"https://github.com/samsung/mtower/commit/afef59aa6f55c5d5ebf9b14bc020bf1c2c37489a","target":{"file":"tee/kernel/entry_std.c"},"deprecated":false,"digest":{"line_hashes":["15241187977599390557027995090086717603","44681165727113205849469617731580140998","314630279340291159028378177108634450152"],"threshold":0.9}},{"id":"CVE-2026-82926-7549ea4b","signature_type":"Function","signature_version":"v1","source":"https://github.com/samsung/mtower/commit/afef59aa6f55c5d5ebf9b14bc020bf1c2c37489a","target":{"function":"tee_ta_invoke_command","file":"tee/kernel/tee_ta_manager.c"},"deprecated":false,"digest":{"function_hash":"55834891065023268035352653061700326694","length":189}},{"target":{"file":"tee/kernel/entry_std.c","function":"tee_ioctl_invoke"},"deprecated":false,"digest":{"length":495,"function_hash":"211490072679911781159869967205244301637"},"id":"CVE-2026-82926-d3707a39","signature_type":"Function","signature_version":"v1","source":"https://github.com/samsung/mtower/commit/afef59aa6f55c5d5ebf9b14bc020bf1c2c37489a"}],"vanir_signatures_modified":"2026-10-08T07:15:24Z","source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-82926.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H"}]}