CVE-2025-6033: Memory Corruption issue in XML_Serialize() in NI Circuit Design Suite
There is a memory corruption vulnerability due to an out of bounds write in XMLSerialize() when using SymbolEditor in NI Circuit Design Suite. This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .sym file. This vulnerability affects NI Circuit Design Suite 14.3.1 and prior versions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-6033?
CVE-2025-6033 is classified as a critical severity vulnerability.
How can I fix CVE-2025-6033?
To fix CVE-2025-6033, upgrade to a version of NI Circuit Design Suite that is beyond 14.3.1.
What are the potential impacts of CVE-2025-6033?
The impacts of CVE-2025-6033 include information disclosure and the potential for arbitrary code execution.
What software is affected by CVE-2025-6033?
The affected software for CVE-2025-6033 is NI Circuit Design Suite versions up to 14.3.1.
What kind of vulnerability is CVE-2025-6033?
CVE-2025-6033 is a memory corruption vulnerability caused by an out of bounds write in XML_Serialize().