CVE-2025-2631: Out of Bounds Write Vulnerability in NI LabVIEW in InitCPUInformation()
Out of bounds write vulnerability due to improper bounds checking in NI LabVIEW in InitCPUInformation() that may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted VI. This vulnerability affects NI LabVIEW 2025 Q1 and prior versions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2631?
CVE-2025-2631 is classified as a critical severity vulnerability due to the potential for arbitrary code execution.
How do I fix CVE-2025-2631?
To fix CVE-2025-2631, users should upgrade to a patched version of NI LabVIEW beyond 2025 Q1.
What are the potential impacts of CVE-2025-2631?
Successful exploitation of CVE-2025-2631 may lead to information disclosure or arbitrary code execution.
Who is affected by CVE-2025-2631?
CVE-2025-2631 affects users of NI LabVIEW versions up to and including 2025 Q1.
How can an attacker exploit CVE-2025-2631?
An attacker can exploit CVE-2025-2631 by convincing a user to open a specially crafted VI.