First published: Thu May 15 2025(Updated: )
There is a memory corruption vulnerability due to an out of bounds write in CheckPins() when using the SymbolEditor in NI Circuit Design Suite. This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .sym file. This vulnerability affects NI Circuit Design Suite 14.3.0 and prior versions.
Credit: security@ni.com
Affected Software | Affected Version | How to fix |
---|---|---|
NI Circuit Design Suite | <14.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-30418 is classified as a critical severity vulnerability due to the potential for arbitrary code execution.
To mitigate CVE-2025-30418, update your NI Circuit Design Suite to version 14.3.0 or later.
Exploitation of CVE-2025-30418 can lead to information disclosure or allow an attacker to execute arbitrary code.
CVE-2025-30418 affects NI Circuit Design Suite versions prior to 14.3.0.
CVE-2025-30418 involves a memory corruption issue caused by an out of bounds write in the CheckPins() function.