Out-of-Bounds Write Vulnerability in DASYLab by MeasX
CVE-2026-64196

8.5HIGH

Key Information:

Vendor

Measx

Status
Vendor
CVE Published:
3 September 2026

What is CVE-2026-64196?

An out-of-bounds write vulnerability exists in DASYLab that arises from inadequate validation of user-supplied data. This flaw allows an attacker to exploit the software by persuading a user to open a specially crafted .DSB file, leading to potential memory corruption as data is written past the allocated heap. All versions prior to 2026.0.0 are affected, highlighting the importance of applying security updates to mitigate this risk effectively.

Affected Version(s)

DASYLab 0 < 2026.0.0

References

CVSS V4

Score:
8.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

measX credits Michael Heinzl for reporting these issues and coordinating disclosure.
.