CVE-2020-12312: Medium severity intel quartus prime pro edition design software vulnerability
Improper buffer restrictions in the Intel(R) Stratix(R) 10 FPGA firmware provided with the Intel(R) Quartus(R) Prime Pro software before version 20.2 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-12312?
CVE-2020-12312 is a vulnerability in the Intel(R) Stratix(R) 10 FPGA firmware provided with the Intel(R) Quartus(R) Prime Pro software before version 20.2.
What is the impact of CVE-2020-12312?
The impact of CVE-2020-12312 is the potential enablement of escalation of privilege via physical access.
Which software versions are affected by CVE-2020-12312?
CVE-2020-12312 affects Intel Quartus Prime Pro software versions up to but excluding 20.2.
Is Intel Stratix 10 Fpga affected by CVE-2020-12312?
No, Intel Stratix 10 Fpga is not affected by CVE-2020-12312.
Where can I find more information about CVE-2020-12312?
You can find more information about CVE-2020-12312 at the Intel Security Center Advisory page: https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00388