ICSA-24-205-03
·
Published 2024-07-23
·
View on CISA ICS-CERT ↗
National Instruments LabVIEW
CVSS 7.8
HIGH
Risk Summary
Successful exploitation of these vulnerabilities could allow a local attacker to disclose information and execute arbitrary code.
CVEs (3)
Remediations
- National Instruments has provided a fix for these issues and recommends users to refer to their public advisories:
- https://www.ni.com/en/support/security/available-critical-and-security-updates-for-ni-software/out-of-bounds-read-due-to-missing-bounds-check-in-labview.html
- https://www.ni.com/en/support/security/available-critical-and-security-updates-for-ni-software/memory-corruption-issues-due-to-improper-length-checks-in-labview.html
Affected Vendors
National Instruments
Affected Products (1)
National Instruments
·
LabVIEW
<=24.1f0
Affected Sectors
Critical Manufacturing, Defense Industrial Base, Information Technology, Transportation Systems
Get alerted to advisories like this
OTWarden monitors CISA, BSI, Siemens, Rockwell and more — and emails you within 2 hours when your vendors are affected.
Start free trial Learn more