Описание
There is an incorrect conversion between numeric types vulnerability in NI grpc-device due to missing range checks in CodeGen. This may silently discard high bits if a size value exceeded the target type's range. This affects NI grpc-device 2.17.0 and prior versions.
Уязвимые конфигурации
Конфигурация 1Версия до 2025 (включая)
Одно из
cpe:2.3:a:ni:instrumentstudio:*:*:*:*:*:*:*:*
cpe:2.3:a:ni:instrumentstudio:2026:q1:*:*:*:*:*:*
cpe:2.3:a:ni:instrumentstudio:2026:q2:*:*:*:*:*:*
Конфигурация 2Версия до 2.18.0 (исключая)
cpe:2.3:a:ni:ni_grpc_device_server:*:*:*:*:*:*:*:*
EPSS
Процентиль: 23%
0.00301
Низкий
3.7 Low
CVSS3
5.3 Medium
CVSS3
Дефекты
CWE-681
EPSS
Процентиль: 23%
0.00301
Низкий
3.7 Low
CVSS3
5.3 Medium
CVSS3
Дефекты
CWE-681