Impact
This vulnerability is an out‑of‑bounds write that occurs when DASYLab parses a user‑supplied .DSB file. The error allows the application to write beyond the end of an allocated heap buffer, which can lead to arbitrary code execution or system compromise. It is a classic buffer overflow flaw (CWE‑787).
Affected Systems
The issue affects all versions of measX DASYLab prior to 2026.0.0. Users running any earlier release are vulnerable, regardless of operating system or installation environment.
Risk and Exploitability
With a CVSS score of 8.5 this vulnerability is considered high severity. The EPSS score is not available, but the lack of a KEV listing indicates no publicly known active exploit deployments at present. Exploitation requires local user interaction and the opening of a malicious .DSB file, making social‑engineering or targeted delivery the most likely attack paths.
OpenCVE Enrichment