← Back

CVE-2024-10496

nvd nist
Published: Dec 10, 2024Modified: Jun 17, 2026

JSON object

Loading...
8.4
Vector
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Show more
CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XShow less
Source: security@ni.com (Secondary)

Description

An out of bounds read due to improper input validation in BuildFontMap in fontmgr.cpp in NI LabVIEW may disclose information or result in arbitrary code execution. Successful exploitation requires an attacker to provide a user with a specially crafted VI. This vulnerability affects LabVIEW 2024 Q3 and prior versions.

Affected (15)

Products: Ni: Labview
1 product
Labview
Configuration A
15 vulnerable
Vulnerable SoftwareAffected Versions
Ni
Up to 2021
Version 2022 q1
Version 2022 q3
Version 2022 q3_patch1
Version 2022 q3_patch2
Version 2023 q1
Version 2023 q3
Version 2023 q3_patch1
Version 2023 q3_patch2
Version 2023 q3_patch3
Version 2023 q3_patch4
Version 2024 q1
Version 2024 q1_patch1
Version 2024 q3
Version 2024 q3_patch1

Timeline

No history available yet.