CVE-2025-64464
7.8NI · LabVIEW
A memory corruption vulnerability in NI LabVIEW allows for information disclosure or arbitrary code execution when a user opens a specially crafted VI file.
Executive summary
An out of bounds read vulnerability in NI LabVIEW poses a critical risk of arbitrary code execution if an attacker convinces a user to open a malicious file.
Vulnerability
The software contains an out of bounds read flaw within the lvre!VisaWriteFromFile function that occurs when parsing corrupted VI files. Exploitation requires user interaction via the opening of a malicious file, and the attacker does not require prior authentication.
Business impact
The potential for arbitrary code execution creates a significant risk of full system compromise, including unauthorized data access and the deployment of malicious payloads. With a CVSS score of 7.8, this high-severity vulnerability necessitates immediate attention to prevent operational disruption and the loss of sensitive engineering or intellectual property data stored within the LabVIEW environment.
Remediation
Immediate Action: Review the official NI security advisory and apply the latest security updates provided by the vendor to remediate the vulnerable lvre!VisaWriteFromFile function.
Proactive Monitoring: Monitor endpoint activity for unusual process execution patterns or unexpected file access logs originating from the LabVIEW application.
Compensating Controls: Implement strict file access controls and utilize security software to scan incoming project files or VIs for malicious signatures before they are opened by engineering staff.
Exploitation status
Public Exploit Available: Unknown
Analyst recommendation
Given the severity of potential arbitrary code execution, organizations should prioritize the identification of all LabVIEW installations within their network. Administrators must monitor the NI security portal for the release of specific patches and deploy them across all affected workstations as soon as they become available to mitigate this critical risk.
More NI CVEs
Sources
Originally found and disclosed by Michael Heinzl working with CISA, per the CVE Program record.