Search Order Hijacking in Altera Quartus Prime Standard and Lite Installers
CVE-2025-14599
5.4MEDIUM
What is CVE-2025-14599?
The uncontrolled search path element vulnerability found in Altera Quartus Prime Standard and Lite installers on Windows poses a significant security risk. This flaw enables attackers to exploit the search order, potentially allowing unauthorized access to sensitive systems and data during the installation process. The issue impacts versions from 23.1 through 24.1, making it crucial for users to assess their systems and apply necessary updates to mitigate this risk.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Quartus Prime Lite 23.1 <= 24.1
Quartus Prime Standard Windows 23.1 <= 24.1
References
CVSS V4
Score:
5.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
Physical
Privileges Required:
Undefined
User Interaction:
Unknown
Timeline
Vulnerability published
Vulnerability Reserved
