There is a memory corruption vulnerability due to an out of bounds read in GetSymbolBorderRectSize() when using the SymbolEditor in NI Circuit Design Suite. This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .sym file. This vulnerability affects NI Circuit Design Suite 14.3.0 and prior versions.
Metrics
Affected Vendors & Products
References
History
Tue, 20 May 2025 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Ni
Ni circuit Design Suite |
|
CPEs | cpe:2.3:a:ni:circuit_design_suite:*:*:*:*:*:*:*:* | |
Vendors & Products |
Ni
Ni circuit Design Suite |
Thu, 15 May 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Thu, 15 May 2025 16:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | There is a memory corruption vulnerability due to an out of bounds read in GetSymbolBorderRectSize() when using the SymbolEditor in NI Circuit Design Suite. This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .sym file. This vulnerability affects NI Circuit Design Suite 14.3.0 and prior versions. | |
Title | Out of Bounds Read in GetSymbolBorderRectSize() in NI Circuit Design Suite | |
Weaknesses | CWE-125 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: NI
Published: 2025-05-15T16:27:44.419Z
Updated: 2025-05-15T20:03:00.208Z
Reserved: 2025-03-21T21:05:43.246Z
Link: CVE-2025-30419

Updated: 2025-05-15T20:02:50.544Z

Status : Analyzed
Published: 2025-05-15T17:15:53.840
Modified: 2025-05-20T15:49:39.510
Link: CVE-2025-30419

No data.