Memory Corruption Vulnerability in NI Circuit Design Suite by National Instruments
CVE-2025-30420
8.5HIGH
What is CVE-2025-30420?
A memory corruption vulnerability exists due to an out-of-bounds read in the Bitmap::InternalDraw() function when utilizing the SymbolEditor in the NI Circuit Design Suite. This flaw can lead to significant risks such as information disclosure or arbitrary code execution. Attackers may exploit this vulnerability by enticing users to open a specially crafted .sym file. This issue impacts NI Circuit Design Suite versions up to and including 14.3.0, underscoring the necessity for users to stay updated with security patches.
Affected Version(s)
Circuit Design Suite 0 <= 14.3.0