← Vulnerability feed

Vulnerability record · CVE-2026-0957 · published 13 March 2026

CVE-2026-0957: Ni dasylab out-of-bounds write vulnerability

NNi · Dasylab

There is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted file in Digilent DASYLab.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted file. This vulnerability affects all versions of Digilent DASYLab.

8.5 CVSS 4.0 High EPSS 0.23% · top 87.7% CWE-787 · Out-of-bounds write
8.5CVSS 4.0 base score
0.23%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
1References
17 Jun 2026Last modified by NVD

Description

There is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted file in Digilent DASYLab.  This vulnerability may result in information disclosure or arbitrary code execution. Successful exploitation requires an attacker to get a user to open a specially crafted file. This vulnerability affects all versions of Digilent DASYLab.

CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2026-0957 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.6CVE-2026-64199Ni dasylab out-of-bounds read vulnerabilityThere is an out-of-bounds read vulnerability in DASYLab due to improper validation of user-supplied data.   This results in a read outside the bounds…EPSS 0.16%8.5CVE-2026-64197Ni dasylab out-of-bounds write vulnerabilityThere is an out-of-bounds write vulnerability in DASYLab due to improper validation of user-supplied data, resulting in a write past the end of an al…EPSS 0.16%8.5CVE-2026-64198Ni dasylab out-of-bounds read vulnerabilityThere is an out-of-bounds read vulnerability in DASYLab due to improper validation of user-supplied data.   This results in a read a few bytes past t…EPSS 0.16%8.5CVE-2026-64200Ni dasylab out-of-bounds read vulnerabilityThere is an out-of-bounds read vulnerability in DASYLab due to improper validation of user-supplied data.   This results in a read a past the end of …EPSS 0.16%8.5CVE-2026-64195Ni dasylab out-of-bounds write vulnerabilityThere is an out-of-bounds write vulnerability in DASYLab due to lack of proper validation of user-supplied data. Successful exploitation requires an …EPSS 0.16%8.5CVE-2026-64196Ni dasylab out-of-bounds write vulnerabilityThere is an out-of-bounds write vulnerability in DASYLab due to improper validation of user-supplied data, resulting in a write past the end of an al…EPSS 0.16%8.5CVE-2026-0954Ni dasylab out-of-bounds write vulnerabilityThere is a memory corruption vulnerability due to an out-of-bounds write when loading a corrupted DSB file in Digilent DASYLab.  This vulnerability m…EPSS 0.20%8.5CVE-2026-0955Ni dasylab out-of-bounds read vulnerabilityThere is a memory corruption vulnerability due to an out-of-bounds read when loading a corrupted file in Digilent DASYLab.  This vulnerability may re…EPSS 0.20%

Source: NIST National Vulnerability Database (record CVE-2026-0957), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.