Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-4080


A memory corruption issue due to an improper length check in LabVIEW tdcore.dll may disclose information or result in arbitrary code execution. Successful exploitation requires an attacker to provide a user with a specially crafted VI. This vulnerability affects LabVIEW 2024 Q1 and prior versions.


Published

2024-07-23T14:15:14.590

Last Modified

2025-09-29T19:15:33.773

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-787
  • Type: Primary
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application ni labview ≤ 2020 Yes
Application ni labview 2021 Yes
Application ni labview 2021 Yes
Application ni labview 2022 Yes
Application ni labview 2022 Yes
Application ni labview 2023 Yes
Application ni labview 2023 Yes
Application ni labview 2023 Yes
Application ni labview 2024 Yes

References