First published: Mon Jul 22 2024(Updated: )
An integer overflow vulnerability due to improper input validation when reading TDMS files in LabVIEW may result in an infinite loop. Successful exploitation requires an attacker to provide a user with a specially crafted TDMS file. This vulnerability affects LabVIEW 2024 Q1 and prior versions.
Credit: security@ni.com
Affected Software | Affected Version | How to fix |
---|---|---|
National Instruments LabVIEW | <2024 Q1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-6638 is classified as a critical severity vulnerability due to its potential to cause an infinite loop.
To mitigate CVE-2024-6638, users should update to a version of LabVIEW released after 2024 Q1 that addresses this vulnerability.
CVE-2024-6638 specifically involves TDMS files in LabVIEW.
Users of National Instruments LabVIEW versions 2024 Q1 and prior are affected by CVE-2024-6638.
Exploitation of CVE-2024-6638 can result in an infinite loop, potentially leading to denial of service.