PT-2020-4780 · Intel · Intel Quartus Prime Pro+1

Published

2020-11-10

·

Updated

2020-11-30

·

CVE-2020-8767

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Intel(R) Quartus Prime versions prior to 20.2
Description: The issue is related to an uncaught exception in the Intel(R) 50GbE IP Core for Intel(R) Quartus Prime, which may allow an authenticated user to potentially enable denial of service via local access. The vulnerability can be exploited by a remote attacker to cause a denial of service.
Recommendations: For versions prior to 20.2, update to version 20.2 or later to resolve the issue. As a temporary workaround, consider restricting local access to the system until a patch is applied.

Fix

Improper Handling of Exceptional Conditions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-05332
CVE-2020-8767

Affected Products

Intel 50Gbe Ip Core
Intel Quartus Prime Pro