There is a deserialization of untrusted data vulnerability in Digilent DASYLab. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted DSB file. The vulnerability affects all versions of DASYLab.
Metrics
Affected Vendors & Products
References
History
Fri, 05 Sep 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Digilent
Digilent dasylab |
|
| Vendors & Products |
Digilent
Digilent dasylab |
Tue, 02 Sep 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 02 Sep 2025 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | There is a deserialization of untrusted data vulnerability in Digilent DASYLab. This vulnerability may result in arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted DSB file. The vulnerability affects all versions of DASYLab. | |
| Title | Deserialization of Untrusted Data when parsing a DSB file with Digilent DASYLab | |
| Weaknesses | CWE-502 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: NI
Published: 2025-09-02T18:19:48.923Z
Updated: 2025-09-02T19:22:31.352Z
Reserved: 2025-08-19T16:51:06.487Z
Link: CVE-2025-9188
Updated: 2025-09-02T19:22:28.846Z
Status : Awaiting Analysis
Published: 2025-09-02T19:15:32.840
Modified: 2025-09-04T15:36:56.447
Link: CVE-2025-9188
No data.