There is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted LVCLASS file in NI LabVIEW. This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted .lvclass file. This vulnerability affects NI LabVIEW 2026 Q1 (26.1.0) and prior versions.
References
Configurations
Configuration 1 (hide)
|
History
13 Apr 2026, 14:55
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.ni.com/en/support/security/available-critical-and-security-updates-for-ni-software/2026/lv-class-file-parsing-memory-corruption-vulnerability-in-ni-labview.html - Vendor Advisory | |
| First Time |
Ni
Ni labview |
|
| CPE | cpe:2.3:a:ni:labview:2024:q1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch2:*:*:*:*:*:* cpe:2.3:a:ni:labview:*:*:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch6:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q3_patch4:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch4:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q1_patch1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch5:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch7:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q3_patch2:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q3_patch1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q1_patch3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q1_patch2:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q3_patch3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q3_patch3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q3_patch1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q3_patch2:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q3_patch5:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q1_patch1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2025:q1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:q3:*:*:*:*:*:* cpe:2.3:a:ni:labview:2026:q1:*:*:*:*:*:* cpe:2.3:a:ni:labview:2024:-:*:*:*:*:*:* cpe:2.3:a:ni:labview:2023:q3_patch8:*:*:*:*:*:* |
07 Apr 2026, 20:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-04-07 20:16
Updated : 2026-04-13 14:55
NVD link : CVE-2026-32861
Mitre link : CVE-2026-32861
CVE.ORG link : CVE-2026-32861
JSON object : View
Products Affected
ni
- labview
CWE
CWE-787
Out-of-bounds Write
