CVE-2018-3683: High severity intel quartus prime software vulnerability
Published Jul 10, 2018
·Updated
Unquoted service paths in Intel Quartus Prime in versions 15.1 - 18.0 allow a local attacker to potentially execute arbitrary code.
Affected Software
1 affected component
Intel Quartus Prime Software>=15.1<=18.0
Event History
Jul 10, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2018-3683?
CVE-2018-3683 is a vulnerability that allows a local attacker to potentially execute arbitrary code in Intel Quartus Prime versions 15.1 to 18.0 due to unquoted service paths.
2
How severe is CVE-2018-3683?
The severity of CVE-2018-3683 is high, with a CVSS score of 7.8.
3
Which versions of Intel Quartus Prime are affected?
Intel Quartus Prime versions 15.1 to 18.0 are affected by CVE-2018-3683.
4
How can a local attacker exploit CVE-2018-3683?
A local attacker can exploit CVE-2018-3683 by using unquoted service paths to execute arbitrary code.
5
Is there a fix for CVE-2018-3683?
Yes, installing the latest version of Intel Quartus Prime that includes the security patch provided by Intel will fix CVE-2018-3683.