CVE-2024-21837

Uncontrolled search path in some Intel(R) Quartus(R) Prime Lite Edition Design software before version 23.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
Configurations

Configuration 1 (hide)

cpe:2.3:a:intel:quartus_prime:*:*:*:*:lite:*:*:*

History

28 Jan 2025, 17:40

Type Values Removed Values Added
First Time Intel
Intel quartus Prime
CPE cpe:2.3:a:intel:quartus_prime:*:*:*:*:lite:*:*:*
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01055.html - () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01055.html - Patch, Vendor Advisory

21 Nov 2024, 08:55

Type Values Removed Values Added
References () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01055.html - () https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-01055.html -
Summary
  • (es) La ruta de búsqueda no controlada en algunos software de diseño Intel(R) Quartus(R) Prime Lite Edition anteriores a la versión 23.1 puede permitir que un usuario autenticado potencialmente habilite la escalada de privilegios a través del acceso local.

16 May 2024, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-16 21:16

Updated : 2025-01-28 17:40


NVD link : CVE-2024-21837

Mitre link : CVE-2024-21837

CVE.ORG link : CVE-2024-21837


JSON object : View

Products Affected

intel

  • quartus_prime
CWE
CWE-427

Uncontrolled Search Path Element