Description

A stack-based buffer overflow vulnerability due to a missing bounds check in the NI I/O Trace Tool may result in arbitrary code execution. Successful exploitation requires an attacker to provide a user with a specially crafted nitrace file. The NI I/O Trace tool is installed as part of the NI System Configuration utilities included with many NI software products.  Refer to the NI Security Advisory for identifying the version of NI IO Trace.exe installed. The NI I/O Trace tool was also previously released as NI Spy.

INFO

Published Date :

2024-07-23T13:15:50.508Z

Last Modified :

2025-08-27T20:42:59.211Z

Source :

NI
AFFECTED PRODUCTS

The following products are affected by CVE-2024-5602 vulnerability.

Vendors Products
Ni
  • System Configuration
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-5602.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact