There is an integer conversion vulnerability resulting in an out-of-bounds read when loading images recently discovered in NI LabVIEW. This may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted VI file. This vulnerability affects NI LabVIEW 2026 Q3 and prior versions.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-08-25 17:17
Updated : 2026-09-08 14:30
NVD link : CVE-2026-18444
Mitre link : CVE-2026-18444
CVE.ORG link : CVE-2026-18444
JSON object : View
Products Affected
ni
- labview
CWE
CWE-195
Signed to Unsigned Conversion Error
