VYPR
High severity7.8NVD Advisory· Published Dec 10, 2024· Updated Jun 17, 2026

CVE-2024-10495

CVE-2024-10495

Description

An out of bounds read due to improper input validation when loading the font table in fontmgr.cpp in NI LabVIEW may disclose information or result in arbitrary code execution. Successful exploitation requires an attacker to provide a user with a specially crafted VI. This vulnerability affects LabVIEW 2024 Q3 and prior versions.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

17
  • Ni/Labview17 versions
    cpe:2.3:a:ni:labview:*:*:*:*:*:*:*:*+ 16 more
    • cpe:2.3:a:ni:labview:*:*:*:*:*:*:*:*range: <=2021
    • cpe:2.3:a:ni:labview:2022:q1:*:*:*:*:*:*
    • cpe:2.3:a:ni:labview:2022:q3:*:*:*:*:*:*
    • cpe:2.3:a:ni:labview:2022:q3_patch1:*:*:*:*:*:*
    • cpe:2.3:a:ni:labview:2022:q3_patch2:*:*:*:*:*:*
    • cpe:2.3:a:ni:labview:2023:q1:*:*:*:*:*:*
    • cpe:2.3:a:ni:labview:2023:q3:*:*:*:*:*:*
    • cpe:2.3:a:ni:labview:2023:q3_patch1:*:*:*:*:*:*
    • cpe:2.3:a:ni:labview:2023:q3_patch2:*:*:*:*:*:*
    • cpe:2.3:a:ni:labview:2023:q3_patch3:*:*:*:*:*:*
    • cpe:2.3:a:ni:labview:2023:q3_patch4:*:*:*:*:*:*
    • cpe:2.3:a:ni:labview:2024:q1:*:*:*:*:*:*
    • cpe:2.3:a:ni:labview:2024:q1_patch1:*:*:*:*:*:*
    • cpe:2.3:a:ni:labview:2024:q3:*:*:*:*:*:*
    • cpe:2.3:a:ni:labview:2024:q3_patch1:*:*:*:*:*:*
    • (no CPE)range: <=2024 Q3
    • (no CPE)range: 0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.