There is a memory corruption vulnerability recently
discovered in NI LabVIEW that may result in information disclosure or arbitrary
code execution. Successful exploitation requires an attacker to get a
user to open a specially crafted VI. This vulnerability affects NI LabVIEW 2026 Q3 (26.3.0)
and prior versions.
Metrics
Affected Vendors & Products
References
History
Thu, 03 Sep 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:ni:labview:2023:q1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch2:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch4:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch5:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch6:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch7:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch8:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch9:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:-:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q1_patch1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q3_patch1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q3_patch2:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q3_patch3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q3_patch4:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q3_patch5:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q3_patch6:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q1_patch1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q1_patch2:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q1_patch3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q3_patch1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q3_patch2:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q3_patch3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q3_patch4:*:*:*:*:*:* cpe:2.3:a:ni:labview:2026:q1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2026:q1_patch1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2026:q1_patch2:*:*:*:*:*:* cpe:2.3:a:ni:labview:2026:q3:*:*:*:*:*:* |
Tue, 25 Aug 2026 18:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 25 Aug 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | There is a memory corruption vulnerability recently discovered in NI LabVIEW that may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted VI. This vulnerability affects NI LabVIEW 2026 Q3 (26.3.0) and prior versions. | |
| Title | Out-of-Bounds Read Vulnerability in NI LabVIEW when loading VI | |
| First Time appeared |
Ni
Ni labview |
|
| Weaknesses | CWE-125 | |
| CPEs | cpe:2.3:a:ni:labview:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Ni
Ni labview |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: NI
Published: 2026-08-25T16:45:51.028Z
Updated: 2026-08-26T03:56:30.505Z
Reserved: 2026-07-19T15:12:06.825Z
Link: CVE-2026-64202
Updated: 2026-08-25T17:39:05.855Z
Status : Analyzed
Published: 2026-08-25T17:17:59.447
Modified: 2026-09-03T15:00:43.810
Link: CVE-2026-64202
No data.