CVE-2025-6033

There is a memory corruption vulnerability due to an out of bounds write in XML_Serialize() when using SymbolEditor in NI Circuit Design Suite.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .sym file. This vulnerability affects NI Circuit Design Suite 14.3.1 and prior versions.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ni:circuit_design_suite:*:*:*:*:*:*:*:*

History

07 Oct 2025, 13:24

Type Values Removed Values Added
First Time Ni circuit Design Suite
Ni
References () https://www.ni.com/en/support/security/available-critical-and-security-updates-for-ni-software/improper-input-validation-causes-memory-corruption-vulnerabilities-in-circuit-design-suite.html - () https://www.ni.com/en/support/security/available-critical-and-security-updates-for-ni-software/improper-input-validation-causes-memory-corruption-vulnerabilities-in-circuit-design-suite.html - Vendor Advisory
CPE cpe:2.3:a:ni:circuit_design_suite:*:*:*:*:*:*:*:*

30 Sep 2025, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-09-30 16:15

Updated : 2025-10-07 13:24


NVD link : CVE-2025-6033

Mitre link : CVE-2025-6033

CVE.ORG link : CVE-2025-6033


JSON object : View

Products Affected

ni

  • circuit_design_suite
CWE
CWE-787

Out-of-bounds Write