Out-of-Bounds Write Vulnerability in DASYLab by MeasX
CVE-2026-64196
8.5HIGH
What is CVE-2026-64196?
An out-of-bounds write vulnerability exists in DASYLab that arises from inadequate validation of user-supplied data. This flaw allows an attacker to exploit the software by persuading a user to open a specially crafted .DSB file, leading to potential memory corruption as data is written past the allocated heap. All versions prior to 2026.0.0 are affected, highlighting the importance of applying security updates to mitigate this risk effectively.
Affected Version(s)
DASYLab 0 < 2026.0.0
References
CVSS V4
Score:
8.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown
Timeline
Vulnerability published
Vulnerability Reserved
Credit
measX credits Michael Heinzl for reporting these issues and coordinating disclosure.
