CVE-2018-3684: High severity intel quartus ii programmer and tools vulnerability
Published Jul 10, 2018
·Updated
Unquoted service paths in Intel Quartus II in versions 11.0 - 15.0 allow a local attacker to potentially execute arbitrary code.
Affected Software
1 affected component
Intel Quartus II>=11.0<=15.0
Event History
Jul 10, 2018
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2018-3684.
2
What is the severity level of CVE-2018-3684?
The severity level of CVE-2018-3684 is high.
3
What software versions are affected by CVE-2018-3684?
Versions 11.0 to 15.0 of Intel Quartus II are affected by CVE-2018-3684.
4
How can a local attacker potentially execute arbitrary code with CVE-2018-3684?
A local attacker can potentially execute arbitrary code with CVE-2018-3684 by exploiting the unquoted service paths in Intel Quartus II.
5
Is there a reference link for CVE-2018-3684?
Yes, you can find more information about CVE-2018-3684 at the following link: [Intel Security Advisory](https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00151.html)