Uncontrolled Search Path in Intel Quartus Prime Pro and Standard Edition Software
CVE-2022-37329

6.7MEDIUM

Key Information:

Vendor
Intel
Vendor
CVE Published:
16 February 2023

Summary

An uncontrolled search path vulnerability exists in specific Intel Quartus Prime Pro and Standard Edition software versions. This flaw could allow an authenticated user with local access to trigger a privilege escalation scenario, potentially compromising system integrity. Users are encouraged to apply the necessary patches to mitigate any risks associated with this vulnerability. For further details, refer to the Intel security advisory.

Affected Version(s)

Intel(R) Quartus(R) Prime Pro and Standard Edition software See references

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.