First published: Tue Jul 10 2018(Updated: )
Unquoted service paths in Intel Quartus Prime Programmer and Tools in versions 15.1 - 18.0 allow a local attacker to potentially execute arbitrary code.
Credit: secure@intel.com
Affected Software | Affected Version | How to fix |
---|---|---|
Intel Quartus Prime | >=15.1<=18.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-3688 has been assigned a high severity rating due to the potential for arbitrary code execution.
To mitigate CVE-2018-3688, users should ensure that service paths are correctly quoted in the Intel Quartus Prime Programmer and Tools configuration.
CVE-2018-3688 affects Intel Quartus Prime Programmer and Tools versions 15.1 through 18.0.
An attacker exploiting CVE-2018-3688 can potentially execute arbitrary code with elevated privileges on an affected system.
Yes, Intel has released updates that address the vulnerabilities related to CVE-2018-3688, and users should apply them as soon as possible.