CVE-2025-30421: Stack-based Buffer Overflow in DrObjectStorage::XML_Serialize() in NI Circuit Design Suite
There is a memory corruption vulnerability due to a stack-based buffer overflow in DrObjectStorage::XMLSerialize() when using the SymbolEditor in NI Circuit Design Suite. This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .sym file. This vulnerability affects NI Circuit Design Suite 14.3.0 and prior versions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-30421?
CVE-2025-30421 is considered a critical severity vulnerability due to its potential for information disclosure and arbitrary code execution.
How do I fix CVE-2025-30421?
To fix CVE-2025-30421, update your NI Circuit Design Suite to version 14.3.0 or later.
What software is affected by CVE-2025-30421?
CVE-2025-30421 affects the NI Circuit Design Suite up to version 14.3.0.
What type of vulnerability is CVE-2025-30421?
CVE-2025-30421 is a memory corruption vulnerability resulting from a stack-based buffer overflow.
What could happen if CVE-2025-30421 is exploited?
Exploitation of CVE-2025-30421 could lead to information disclosure or the execution of arbitrary code.