CVE-2025-14612: Quartus Prime Pro Edition Advisory
Published Jan 6, 2026
·Updated
Insecure Temporary File vulnerability in Altera Quartus Prime Pro
Installer (SFX)
on Windows allows : Use of Predictable File Names.This issue affects Quartus Prime Pro: from 24.1 through 25.1.1.
Affected Software
3 affected components
Altera Quartus Prime Pro>=24.1<=25.1.1
All of the following
Intel Quartus Prime>=24.1<25.3
Microsoft Windows
Event History
Jan 6, 2026
CVE Published
via MITRE·09:24 PM
Data Sourced
via MITRE·09:24 PM
DescriptionSeverityWeakness
Jan 7, 2026
Data Sourced
via NVD·02:03 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-14612?
CVE-2025-14612 is rated as a moderate severity vulnerability due to the potential for predictable file names leading to insecure temporary file creation.
2
How do I fix CVE-2025-14612?
To mitigate CVE-2025-14612, ensure that you update Altera Quartus Prime Pro to a version beyond 25.1.1.
3
What versions of Quartus Prime Pro are affected by CVE-2025-14612?
CVE-2025-14612 affects Altera Quartus Prime Pro versions from 24.1 through 25.1.1.
4
What kind of vulnerability is CVE-2025-14612?
CVE-2025-14612 is categorized as an Insecure Temporary File vulnerability.
5
Can CVE-2025-14612 lead to data loss?
Yes, CVE-2025-14612 can potentially lead to data exposure or loss due to the insecure handling of temporary files.