CVE-2025-2629: DLL Hijacking Vulnerability in NI LabVIEW When Loading NI Error Reporting
There is a DLL hijacking vulnerability due to an uncontrolled search path that exists in NI LabVIEW when loading NI Error Reporting. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to insert a malicious DLL into the uncontrolled search path. This vulnerability affects NI LabVIEW 2025 Q1 and prior versions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2629?
CVE-2025-2629 has a high severity rating due to its potential for arbitrary code execution.
How do I fix CVE-2025-2629?
To fix CVE-2025-2629, update NI LabVIEW to the latest version beyond 2025 Q1.
What software is affected by CVE-2025-2629?
CVE-2025-2629 affects NI LabVIEW versions up to but not including 2025 Q1.
What type of vulnerability is CVE-2025-2629?
CVE-2025-2629 is categorized as a DLL hijacking vulnerability.
What can happen if CVE-2025-2629 is exploited?
If exploited, CVE-2025-2629 may allow an attacker to execute arbitrary code on the affected system.