PT-2024-7023 · Intel · Intel Quartus Prime Pro Edition Design

Sim0Nsecurity

+1

·

Published

2024-03-15

·

Updated

2025-02-04

·

CVE-2024-22184

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Intel(R) Quartus(R) Prime Pro Edition Design Software versions prior to 24.1
Description The issue is related to an uncontrolled search path in the Intel(R) Quartus(R) Prime Pro Edition Design Software. This may allow an authenticated user to potentially enable escalation of privilege via local access.
Recommendations For versions prior to 24.1, update to version 24.1 or later to resolve the issue. As a temporary workaround, consider restricting local access to the software until a patch is applied.

Fix

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

BDU:2024-08277
CVE-2024-22184

Affected Products

Intel Quartus Prime Pro Edition Design