Vulnerability Details CVE-2024-10494
An out of bounds read due to improper input validation in HeapObjMapImpl.cpp in NI LabVIEW may disclose information or result in arbitrary code execution. Successful exploitation requires an attacker to provide a user with a specially crafted VI. This vulnerability affects LabVIEW 2024 Q3 and prior versions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 10.8%
CVSS Severity
CVSS v3 Score 7.8
Products affected by CVE-2024-10494
-
-
cpe:2.3:a:ni:labview:16.0.0.49152
-
cpe:2.3:a:ni:labview:2012
-
cpe:2.3:a:ni:labview:2014
-
cpe:2.3:a:ni:labview:2015
-
cpe:2.3:a:ni:labview:2016
-
cpe:2.3:a:ni:labview:2017
-
cpe:2.3:a:ni:labview:2018
-
cpe:2.3:a:ni:labview:2019
-
cpe:2.3:a:ni:labview:2020
-
cpe:2.3:a:ni:labview:2021
-
cpe:2.3:a:ni:labview:2022
-
cpe:2.3:a:ni:labview:2023
-
cpe:2.3:a:ni:labview:2024