Uncontrolled Search Path Vulnerability in Altera Quartus Prime Products on Windows
CVE-2025-14625
5.4MEDIUM
What is CVE-2025-14625?
The vulnerability allows for search order hijacking within the Altera Quartus Prime Standard and Lite software on Windows, specifically affecting the Nios II Command Shell modules. This issue permits attackers to exploit the search path configuration, potentially leading to unauthorized code execution. Users are encouraged to review their versions to ensure they are not using affected releases.
Affected Version(s)
Quartus Prime Lite Windows 19.1 <= 24.1
Quartus Prime Standard Windows 19.1 <= 24.1
