CVE-2020-12312

Improper buffer restrictions in the Intel(R) Stratix(R) 10 FPGA firmware provided with the Intel(R) Quartus(R) Prime Pro software before version 20.2 may allow an unauthenticated user to potentially enable escalation of privilege via physical access.
Configurations

Configuration 1 (hide)

cpe:2.3:a:intel:quartus_prime_pro:*:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:intel:stratix_10_fpga_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:intel:stratix_10_fpga:-:*:*:*:*:*:*:*

Information

Published : 2020-11-12 18:15

Updated : 2021-07-21 11:39


NVD link : CVE-2020-12312

Mitre link : CVE-2020-12312


JSON object : View

Products Affected

intel

  • stratix_10_fpga_firmware
  • quartus_prime_pro
  • stratix_10_fpga
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer