CVE-2025-64467: Ni Labview

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

There is an out of bounds read vulnerability in NI LabVIEW in LVResFile::FindRsrcListEntry() when parsing a corrupted VI file. This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted VI. This vulnerability affects NI LabVIEW 2025 Q3 (25.3) and prior versions.

Affected products

  • Ni Labview: version 2022 only; version 2023 only; version 2024 only; version 2025 only

Published 2025-12-18. Last modified 2026-09-30.