CVE-2022-21174: High severity intel quartus prime software vulnerability
Published Feb 9, 2022
·Updated
Improper access control in a third-party component of Intel(R) Quartus(R) Prime Pro Edition before version 21.3 may allow an authenticated user to potentially enable escalation of privilege via local access.
Affected Software
1 affected component
Intel Quartus Prime Software<21.3
Event History
Feb 9, 2022
CVE Published
via MITRE·10:04 PM
Data Sourced
via MITRE·10:04 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2022-21174?
CVE-2022-21174 is a vulnerability in Intel(R) Quartus(R) Prime Pro Edition which allows an authenticated user to potentially enable escalation of privilege via local access.
2
What is the severity of CVE-2022-21174?
The severity of CVE-2022-21174 is high, with a CVSS score of 7.8.
3
Which version of Intel Quartus Prime is affected by CVE-2022-21174?
Intel Quartus Prime Pro Edition before version 21.3 is affected by CVE-2022-21174.
4
How can an attacker exploit CVE-2022-21174?
An attacker can exploit CVE-2022-21174 by leveraging improper access control in a third-party component of Intel Quartus Prime Pro Edition before version 21.3.
5
Is authentication required to exploit CVE-2022-21174?
Yes, authentication is required to exploit CVE-2022-21174.