Uncontrolled search path for the DSP Builder software installer before version 22.4 for Intel(R) FPGAs Pro Edition may allow an authenticated user to potentially enable escalation of privilege via local access.
References
Link | Resource |
---|---|
https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00816.html | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
23 May 2023, 14:29
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00816.html - Vendor Advisory | |
CWE | CWE-428 | |
First Time |
Intel dsp Builder
Intel Intel quartus Prime |
|
CPE | cpe:2.3:a:intel:dsp_builder:*:*:*:*:*:*:*:* cpe:2.3:a:intel:quartus_prime:-:*:*:*:pro:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
10 May 2023, 14:38
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-05-10 14:15
Updated : 2023-11-07 03:53
NVD link : CVE-2022-43474
Mitre link : CVE-2022-43474
JSON object : View
Products Affected
intel
- quartus_prime
- dsp_builder
CWE
CWE-428
Unquoted Search Path or Element