Use of insufficiently random values for some Intel Agilex(R) software included as part of Intel(R) Quartus(R) Prime Pro Edition for linux before version 22.4 may allow an authenticated user to potentially enable information disclosure via local access.
References
Link | Resource |
---|---|
http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00850.html | Patch Vendor Advisory |
Configurations
History
22 Aug 2023, 14:20
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-330 | |
First Time |
Intel
Intel quartus Prime |
|
CPE | cpe:2.3:a:intel:quartus_prime:*:*:*:*:pro:*:*:* | |
References | (MISC) http://www.intel.com/content/www/us/en/security-center/advisory/intel-sa-00850.html - Patch, Vendor Advisory | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 5.5 |
15 Aug 2023, 13:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-08-15 13:15
Updated : 2023-11-07 04:08
NVD link : CVE-2023-24478
Mitre link : CVE-2023-24478
JSON object : View
Products Affected
intel
- quartus_prime
CWE
CWE-330
Use of Insufficiently Random Values