Intel Quartus Prime vulnerabilities
43 known vulnerabilities affecting intel/quartus_prime.
Total CVEs
43
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH24MEDIUM19
Vulnerabilities
Page 1 of 3
CVE-2025-14596MEDIUMCVSS 5.4≥ 24.1, < 25.12026-01-07
CVE-2025-14596 [MEDIUM] CWE-427 CVE-2025-14596: Uncontrolled Search Path Element vulnerability in Altera Quartus Prime Pro
Installer (SFX)
on Wi
Uncontrolled Search Path Element vulnerability in Altera Quartus Prime Pro
Installer (SFX)
on Windows allows Search Order Hijacking.This issue affects Quartus Prime Pro: from 24.1 through 24.3.1.
nvd
CVE-2025-14605MEDIUMCVSS 5.4≥ 17.0, < 25.1.12026-01-07
CVE-2025-14605 [MEDIUM] CWE-427 CVE-2025-14605: Uncontrolled Search Path Element vulnerability in Altera Quartus Prime Pro on Windows (System Consol
Uncontrolled Search Path Element vulnerability in Altera Quartus Prime Pro on Windows (System Console modules) allows Search Order Hijacking.This issue affects Quartus Prime Pro: from 17.0 through 25.1.1.
nvd
CVE-2025-14612MEDIUMCVSS 5.4≥ 24.1, < 25.32026-01-07
CVE-2025-14612 [MEDIUM] CWE-377 CVE-2025-14612: Insecure Temporary File vulnerability in Altera Quartus Prime Pro
Installer (SFX)
on Windows all
Insecure Temporary File vulnerability in Altera Quartus Prime Pro
Installer (SFX)
on Windows allows : Use of Predictable File Names.This issue affects Quartus Prime Pro: from 24.1 through 25.1.1.
nvd
CVE-2025-14614MEDIUMCVSS 5.4≥ 23.1, < 25.12026-01-07
CVE-2025-14614 [MEDIUM] CWE-377 CVE-2025-14614: Insecure Temporary File vulnerability in Altera Quartus Prime Standard
Installer (SFX)
on Window
Insecure Temporary File vulnerability in Altera Quartus Prime Standard
Installer (SFX)
on Windows, Altera Quartus Prime Lite
Installer (SFX)
on Windows allows Explore for Predictable Temporary File Names.This issue affects Quartus Prime Standard: from 23.1 through 24.1; Quartus Prime Lite: from 23.1 through 24.1.
nvd
CVE-2025-14599MEDIUMCVSS 5.4≥ 23.1, < 25.12026-01-07
CVE-2025-14599 [MEDIUM] CWE-427 CVE-2025-14599: Uncontrolled Search Path Element vulnerability in Altera Quartus Prime Standard
Installer (SFX)
o
Uncontrolled Search Path Element vulnerability in Altera Quartus Prime Standard
Installer (SFX)
on Windows, Altera Quartus Prime Lite
Installer (SFX)
on Windows allows Search Order Hijacking.This issue affects Quartus Prime Standard: from 23.1 through 24.1; Quartus Prime Lite: from 23.1 through 24.1.
nvd
CVE-2025-14625MEDIUMCVSS 5.4≥ 19.1, < 25.12026-01-07
CVE-2025-14625 [MEDIUM] CWE-427 CVE-2025-14625: Uncontrolled Search Path Element vulnerability in Altera Quartus Prime Standard on Windows (Nios II
Uncontrolled Search Path Element vulnerability in Altera Quartus Prime Standard on Windows (Nios II Command Shell modules), Altera Quartus Prime Lite on Windows (Nios II Command Shell modules) allows Search Order Hijacking.This issue affects Quartus Prime Standard: from 19.1 through 24.1; Quartus Prime Lite: from 19.1 through 24.1.
nvd
CVE-2025-13665MEDIUMCVSS 5.4fixed in 24.12025-12-12
CVE-2025-13665 [MEDIUM] CWE-427 CVE-2025-13665: The System Console Utility for Windows is vulnerable to a DLL planting vulnerability
The System Console Utility for Windows is vulnerable to a DLL planting vulnerability
nvd
CVE-2025-13663MEDIUMCVSS 5.4fixed in 25.12025-12-11
CVE-2025-13663 [MEDIUM] CWE-279 CVE-2025-13663: Under certain circumstances, the Quartus Prime Pro Installer for Windows does not check the permissi
Under certain circumstances, the Quartus Prime Pro Installer for Windows does not check the permissions of the Quartus target installation directory if the target installation directory already exists.
nvd
CVE-2025-13664MEDIUMCVSS 5.4fixed in 24.12025-12-11
CVE-2025-13664 [MEDIUM] CWE-427 CVE-2025-13664: A potential security vulnerability in Quartus® Prime Standard Edition Design Software may allow esca
A potential security vulnerability in Quartus® Prime Standard Edition Design Software may allow escalation of privilege.
nvd
CVE-2025-13668MEDIUMCVSS 5.4fixed in 25.12025-12-11
CVE-2025-13668 [MEDIUM] CWE-427 CVE-2025-13668: A potential security vulnerability in Quartus® Prime Pro Edition Design Software may allow escalatio
A potential security vulnerability in Quartus® Prime Pro Edition Design Software may allow escalation of privilege.
nvd
CVE-2024-38383MEDIUMCVSS 5.4fixed in 24.22024-11-13
CVE-2024-38383 [MEDIUM] CWE-427 CVE-2024-38383: Uncontrolled search path for some Intel(R) Quartus(R) Prime Pro Edition software for Windows before
Uncontrolled search path for some Intel(R) Quartus(R) Prime Pro Edition software for Windows before version 24.2 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2024-38668MEDIUMCVSS 5.4fixed in 23.1.12024-11-13
CVE-2024-38668 [MEDIUM] CWE-427 CVE-2024-38668: Uncontrolled search path for some Intel(R) Quartus(R) Prime Standard Edition software for Windows be
Uncontrolled search path for some Intel(R) Quartus(R) Prime Standard Edition software for Windows before version 23.1.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2024-22184MEDIUMCVSS 5.4fixed in 24.12024-08-14
CVE-2024-22184 [MEDIUM] CWE-427 CVE-2024-22184: Uncontrolled search path for some Intel(R) Quartus(R) Prime Pro Edition Design Software before versi
Uncontrolled search path for some Intel(R) Quartus(R) Prime Pro Edition Design Software before version 24.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2024-23907MEDIUMCVSS 5.4fixed in 23.42024-08-14
CVE-2024-23907 [MEDIUM] CWE-427 CVE-2024-23907: Uncontrolled search path in some Intel(R) High Level Synthesis Compiler software before version 23.4
Uncontrolled search path in some Intel(R) High Level Synthesis Compiler software before version 23.4 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2024-21809HIGHCVSS 7.3fixed in 23.12024-05-16
CVE-2024-21809 [MEDIUM] CWE-92 CVE-2024-21809: Improper conditions check for some Intel(R) Quartus(R) Prime Lite Edition Design software before ver
Improper conditions check for some Intel(R) Quartus(R) Prime Lite Edition Design software before version 23.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2024-21777HIGHCVSS 7.3fixed in 23.42024-05-16
CVE-2024-21777 [MEDIUM] CWE-427 CVE-2024-21777: Uncontrolled search path in some Intel(R) Quartus(R) Prime Pro Edition Design software before versio
Uncontrolled search path in some Intel(R) Quartus(R) Prime Pro Edition Design software before version 23.4 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2024-21862HIGHCVSS 7.3fixed in 23.12024-05-16
CVE-2024-21862 [MEDIUM] CWE-427 CVE-2024-21862: Uncontrolled search path in some Intel(R) Quartus(R) Prime Standard Edition Design software before v
Uncontrolled search path in some Intel(R) Quartus(R) Prime Standard Edition Design software before version 23.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2024-21837HIGHCVSS 7.3fixed in 23.12024-05-16
CVE-2024-21837 [MEDIUM] CWE-427 CVE-2024-21837: Uncontrolled search path in some Intel(R) Quartus(R) Prime Lite Edition Design software before versi
Uncontrolled search path in some Intel(R) Quartus(R) Prime Lite Edition Design software before version 23.1 may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
CVE-2023-24478MEDIUMCVSS 5.5fixed in 22.42023-08-15
CVE-2023-24478 [MEDIUM] CWE-330 CVE-2023-24478: Use of insufficiently random values for some Intel Agilex(R) software included as part of Intel(R) Q
Use of insufficiently random values for some Intel Agilex(R) software included as part of Intel(R) Quartus(R) Prime Pro Edition for linux before version 22.4 may allow an authenticated user to potentially enable information disclosure via local access.
nvd
CVE-2023-24016HIGHCVSS 7.3fixed in 22.1stdfixed in 22.42023-08-11
CVE-2023-24016 [MEDIUM] CWE-427 CVE-2023-24016: Uncontrolled search path element in some Intel(R) Quartus(R) Prime Pro and Standard edition software
Uncontrolled search path element in some Intel(R) Quartus(R) Prime Pro and Standard edition software for linux may allow an authenticated user to potentially enable escalation of privilege via local access.
nvd
1 / 3Next →