Vision related software from NI used a third-party library for image processing that exposes several vulnerabilities. These vulnerabilities may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted file.
Metrics
Affected Vendors & Products
References
History
Mon, 27 Jan 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 27 Jan 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Vision related software from NI used a third-party library for image processing that exposes several vulnerabilities. These vulnerabilities may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted file. | |
| Title | Dependency on Vulnerable Third-Party Component exposes Vulnerabilities in NI Vision Software | |
| Weaknesses | CWE-1395 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: NI
Published: 2025-01-27T17:17:28.308Z
Updated: 2025-01-27T18:52:58.721Z
Reserved: 2024-12-17T20:42:45.704Z
Link: CVE-2024-12740
Updated: 2025-01-27T18:52:54.165Z
Status : Received
Published: 2025-01-27T18:15:36.743
Modified: 2025-01-27T18:15:36.743
Link: CVE-2024-12740
No data.