Vulnerabilities > Intel > Quartus Prime

DATE CVE VULNERABILITY TITLE RISK
2020-11-12 CVE-2020-8737 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Intel Quartus Prime and Stratix 10 Fpga Firmware
Improper buffer restrictions in the Intel(R) Stratix(R) 10 FPGA firmware provided with the Intel(R) Quartus(R) Prime Pro software before version 20.1 may allow an unauthenticated user to potentially enable escalation of privilege and/or information disclosure via physical access.
local
low complexity
intel CWE-119
4.6
2019-12-16 CVE-2019-14604 NULL Pointer Dereference vulnerability in Intel Quartus Prime
Null pointer dereference in the FPGA kernel driver for Intel(R) Quartus(R) Prime Pro Edition before version 19.3 may allow an authenticated user to potentially enable denial of service via local access.
local
low complexity
intel CWE-476
2.1
2019-12-16 CVE-2019-14603 Incorrect Default Permissions vulnerability in Intel Quartus Prime
Improper permissions in the installer for the License Server software for Intel® Quartus® Prime Pro Edition before version 19.3 may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-276
7.8
2019-05-17 CVE-2019-0171 Incorrect Permission Assignment for Critical Resource vulnerability in Intel Quartus II and Quartus Prime
Improper directory permissions in the installer for Intel(R) Quartus(R) software may allow an authenticated user to potentially enable escalation of privilege via local access.
local
low complexity
intel CWE-732
4.6
2018-07-10 CVE-2018-3683 Unquoted Search Path or Element vulnerability in Intel Quartus Prime
Unquoted service paths in Intel Quartus Prime in versions 15.1 - 18.0 allow a local attacker to potentially execute arbitrary code.
local
low complexity
intel CWE-428
4.6