CVE-2025-30419: Out of Bounds Read in GetSymbolBorderRectSize() in NI Circuit Design Suite
There is a memory corruption vulnerability due to an out of bounds read in GetSymbolBorderRectSize() when using the SymbolEditor in NI Circuit Design Suite. This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .sym file. This vulnerability affects NI Circuit Design Suite 14.3.0 and prior versions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-30419?
CVE-2025-30419 is classified as a critical vulnerability due to its potential for information disclosure and arbitrary code execution.
How do I fix CVE-2025-30419?
To fix CVE-2025-30419, you should update the NI Circuit Design Suite to version 14.3.0 or later.
What causes CVE-2025-30419?
CVE-2025-30419 is caused by a memory corruption vulnerability that occurs during an out-of-bounds read in the GetSymbolBorderRectSize() function.
Who is affected by CVE-2025-30419?
CVE-2025-30419 affects users of the NI Circuit Design Suite versions prior to 14.3.0.
What are the implications of exploiting CVE-2025-30419?
Exploiting CVE-2025-30419 may allow an attacker to gain unauthorized access to sensitive information or execute arbitrary code on the affected system.