CVE 7.8 HIGH

Out of Bounds Read in DefaultFontOptions() in NI Circuit Design Suite_CVE-2025-6034

7.8 / 10
HIGH
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Description

There is a memory corruption vulnerability due to an out of bounds read in DefaultFontOptions() when using SymbolEditor in NI Circuit Design Suite.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .sym file. This vulnerability affects NI Circuit Design Suite 14.3.1 and prior versions.

Basic Information

ID CVE-2025-6034
Source NI
Published Sep 30, 2025 at 16:07

Affected Product

Vendor NI
Product Circuit Design Suite
Affected Versions NI Circuit Design Suite 0

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.