Impact
An overflow in Samsung Escargot’s handling of serialized data can lead to uncontrolled recursion, which may exhaust the stack and cause the engine to crash, resulting in a denial of service. The weakness is classified as CWE-674 uncontrolled recursion.
Affected Systems
The bug appears in Samsung Escargot at commit 590345cc6258317c5da850d846ce6baaf2afc2d3; no specific release number was supplied, so all builds containing this commit are affected.
Risk and Exploitability
The CVSS score of 5.5 indicates moderate impact, and while the EPSS score is not available, the vulnerability is not listed in the CISA KEV catalog. The likely attack vector is a remote attacker sending an oversized serialized payload to an Escargot‑based application, with no authentication or privilege escalation required.
OpenCVE Enrichment