ZDI-25-891: (0Day) Digilent DASYLab DSB File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Digilent DASYLab. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2025-57778.
Affected Software
Event History
Frequently Asked Questions
What is the severity of vulnerability ZDI-25-891?
The severity of vulnerability ZDI-25-891 is significant, as it allows remote attackers to execute arbitrary code.
How do I fix vulnerability ZDI-25-891?
To fix vulnerability ZDI-25-891, users should update to the latest version of Digilent DASYLab that addresses this issue.
Who is affected by vulnerability ZDI-25-891?
Vulnerability ZDI-25-891 affects installations of Digilent DASYLab.
What actions can attackers take due to vulnerability ZDI-25-891?
Attackers can execute arbitrary code on affected systems if the user visits a malicious page or opens a malicious file.
Does vulnerability ZDI-25-891 require user interaction to be exploited?
Yes, vulnerability ZDI-25-891 requires user interaction for exploitation.