A memory corruption issue due to an improper length check in NI LabVIEW may disclose information or result in arbitrary code execution. Successful exploitation requires an attacker to provide a user with a specially crafted VI. This vulnerability affects NI LabVIEW 2024 Q1 and prior versions.
2024-07-23T14:15:14.837
2025-09-29T19:15:34.343
Modified
CVSSv3.1: 7.8 (HIGH)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | ni | labview | ≤ 2020 | Yes |
| Application | ni | labview | 2021 | Yes |
| Application | ni | labview | 2021 | Yes |
| Application | ni | labview | 2022 | Yes |
| Application | ni | labview | 2022 | Yes |
| Application | ni | labview | 2023 | Yes |
| Application | ni | labview | 2023 | Yes |
| Application | ni | labview | 2023 | Yes |
| Application | ni | labview | 2024 | Yes |