GHSA-575v-6pw9-4q2mHighCVSS 7.8
There is an out of bounds write vulnerability due to improper bounds checking resulting in a...
🔗 CVE IDs covered (1)
📋 Description
There is an out of bounds write vulnerability due to improper bounds checking resulting in a large destination address when parsing a DSB file with Digilent DASYLab. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted DSB file. The vulnerability affects all versions of DASYLab.
🔗 References (4)
- https://nvd.nist.gov/vuln/detail/CVE-2025-9189
- https://www.ni.com/en/support/security/available-critical-and-security-updates-for-ni-software/memory-corruption-vulnerabilities-in-digilent-dasylab.html
- https://www.measx.com/en/service/productsecurity/security-updates-for-measx-software/159-securityupdates/1077-deserialization-of-untrusted-data-vulnerability-in-dasylab.html
- https://github.com/advisories/GHSA-575v-6pw9-4q2m