Privilege Escalation Vulnerability in Intel Quartus Prime Lite Edition Software
CVE-2024-21837

7.3HIGH

Key Information:

Vendor
Intel
Vendor
CVE Published:
16 May 2024

Summary

An uncontrolled search path vulnerability exists in Intel Quartus Prime Lite Edition Design software, particularly affecting versions before 23.1. This issue may allow an authenticated user to manipulate local access settings, potentially leading to unauthorized privilege escalation. Users are encouraged to review the security advisory for insights on mitigation and necessary updates.

Affected Version(s)

Intel(R) Quartus(R) Prime Lite Edition Design software before version 23.1

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.