ZDI-CAN-26640: ZDI-25-891: (0Day) Digilent DASYLab DSB File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Digilent DASYLab. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2025-57778.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-26640?
ZDI-CAN-26640 has been assigned a CVSS rating indicating a critical severity level due to the potential for remote code execution.
How do I fix ZDI-CAN-26640?
To fix ZDI-CAN-26640, ensure you update to the latest version of Digilent DASYLab that addresses this vulnerability.
What type of attacks can be executed using ZDI-CAN-26640?
ZDI-CAN-26640 allows remote attackers to execute arbitrary code if the user interacts with malicious content.
What is required for an attacker to exploit ZDI-CAN-26640?
User interaction is required to exploit ZDI-CAN-26640, as the user must visit a malicious page or open a malicious file.
Which software is affected by ZDI-CAN-26640?
ZDI-CAN-26640 affects installations of Digilent DASYLab.