7.2
CVE-2021-3599
- EPSS 0.04%
- Veröffentlicht 12.11.2021 22:15:07
- Zuletzt bearbeitet 21.11.2024 06:21:56
- Quelle psirt@lenovo.com
- Teams Watchlist Login
- Unerledigt Login
A potential vulnerability in the SMI callback function used to access flash device in some ThinkPad models may allow an attacker with local access and elevated privileges to execute arbitrary code.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Lenovo ≫ Thinkpad X380 Yoga Firmware Version < 2020-10-31
Lenovo ≫ Thinkpad X1 Fold Gen 1 Firmware Version < 2021-10-29
Lenovo ≫ Thinkpad Yoga 260 Firmware Version < 2021-10-25
Lenovo ≫ Thinkpad Yoga 11e 3rd Gen Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad Yoga 15 Firmware Version < n19et66w
Lenovo ≫ Thinkpad Yoga 370 Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad X12 Detachable Gen 1 Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad X390 Firmware Version < n2jet96w
Lenovo ≫ Thinkpad Yoga 11e 4th Gen Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad Yoga 11e 5th Gen Firmware SwEditiongeminilake-r Version < 2021-10-31
Lenovo ≫ Thinkpad X250 Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad X260 Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad X390 Yoga Firmware Version < n2let87w
Lenovo ≫ Thinkpad X280 Firmware Version < n20et58w
Lenovo ≫ Thinkpad X1 Titanium Firmware Version < n2met51w
Lenovo ≫ Thinkpad X270 Firmware Version < 2021-10-29
Lenovo ≫ Thinkpad X1 Carbon 5th Gen Kabylake Firmware Version < n1met66w
Lenovo ≫ Thinkpad X13 Gen 1 Firmware Version < n2yet31w
Lenovo ≫ Thinkpad X13 Gen 2 Firmware Version < n35et41w
Lenovo ≫ Thinkpad X13 Yoga Gen 1 Firmware Version < n2uet56w
Lenovo ≫ Thinkpad X13 Yoga Gen 2 Firmware Version < n39et47w
Lenovo ≫ Thinkpad X1 Carbon 5th Gen Skylake Firmware Version < n1met66w
Lenovo ≫ Thinkpad X1 Yoga 1st Gen Firmware Version < n1fet76w
Lenovo ≫ Thinkpad X1 Yoga 3rd Gen Firmware Version < n25et57w
Lenovo ≫ Thinkpad X1 Yoga 4th Gen Firmware Version < n2het64w
Lenovo ≫ Thinkpad X1 Yoga Gen 5 Firmware Version < n2wet30w
Lenovo ≫ Thinkpad X1 Carbon 4th Gen Firmware Version < n1fet76w
Lenovo ≫ Thinkpad 10 Firmware Version < 2021-10-25
Lenovo ≫ Thinkpad X1 Nano Gen 1 Firmware Version < n2tet67w
Lenovo ≫ Thinkpad X1 Extreme Firmware Version < n2eet54w
Lenovo ≫ Thinkpad X1 Extreme 2nd Firmware Version < n2oet53w
Lenovo ≫ Thinkpad X1 Extreme Gen 3 Firmware Version < n2vet33w
Lenovo ≫ Thinkpad T460s Firmware Version < n1cet84w
Lenovo ≫ Thinkpad S2 Gen 6 Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad X1 Carbon Gen 6 Firmware Version < n23et78w
Lenovo ≫ Thinkpad X1 Carbon Gen 7 Firmware Version < n2het64w
Lenovo ≫ Thinkpad X1 Carbon Gen 8 Firmware Version < n2het64w
Lenovo ≫ Thinkpad T560 Firmware Version < n1ket52w
Lenovo ≫ Thinkpad T460p Firmware Version < 2021-10-29
Lenovo ≫ Thinkpad W550s Firmware Version < n11et54w
Lenovo ≫ Thinkpad T590 Firmware Version < n2iet96w
Lenovo ≫ Thinkpad T570 Firmware Version < n1vet57w
Lenovo ≫ Thinkpad S2 Yoga Gen 6 Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad T480 Firmware Version < n24et65w
Lenovo ≫ Thinkpad X1 Tablet Firmware Version < n1let92w
Lenovo ≫ Thinkpad T550 Firmware Version < n11et54w
Lenovo ≫ Thinkpad X1 Carbon 3rd Gen Firmware Version < n14et56w
Lenovo ≫ Thinkpad X1 Tablet Gen 2 Firmware Version < n1oet56w
Lenovo ≫ Thinkpad X1 Tablet Gen 3 Firmware Version < 2021-10-29
Lenovo ≫ Thinkpad T580 Firmware Version < n27et43w
Lenovo ≫ Thinkpad T480s Firmware Version < n22et70w
Lenovo ≫ Thinkpad T15 Firmware Version < n2xet32w
Lenovo ≫ Thinkpad T460 Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad T470 Firmware Version < n1qet92w
Lenovo ≫ Thinkpad T490 Firmware Version < n2iet96w
Lenovo ≫ Thinkpad T490s Firmware Version < n2iet96w
Lenovo ≫ Thinkpad T14s Gen 2 Firmware Version < n35et41w
Lenovo ≫ Thinkpad T14s Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad T470p Firmware Version < r0fet55w
Lenovo ≫ Thinkpad T470s Firmware Version < 2021-10-29
Lenovo ≫ Thinkpad P71 Firmware Version < 2021-10-29
Lenovo ≫ Thinkpad T440p Firmware Version < 2021-10-29
Lenovo ≫ Thinkpad T15 Gen 2 Firmware Version < n34et42w
Lenovo ≫ Thinkpad T15p Gen 1 Firmware Version < 2021-10-29
Lenovo ≫ Thinkpad P70 Firmware Version < n1detb2w
Lenovo ≫ Thinkpad T15g Gen 1 Firmware Version < 2021-10-29
Lenovo ≫ Thinkpad T14 Gen 1 Firmware Version < n2xet32w
Lenovo ≫ Thinkpad T14 Gen 2 Firmware Version < n34et42w
Lenovo ≫ Thinkpad P73 Firmware Version < n2net47w
Lenovo ≫ Thinkpad S540 Firmware Version < 2021-10-25
Lenovo ≫ Thinkpad P72 Firmware Version < n2cet60w
Lenovo ≫ Thinkpad L380 Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad S5 2nd Gen Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad P15v Gen 1 Firmware Version < 2021-10-29
Lenovo ≫ Thinkpad P53 Firmware Version < n2net47w
Lenovo ≫ Thinkpad P53s Firmware Version < n2iet96w
Lenovo ≫ Thinkpad P43s Firmware Version < n2iet96w
Lenovo ≫ Thinkpad P51 Firmware Version < n1uet82w
Lenovo ≫ Thinkpad P51s Firmware Version < n1vet57w
Lenovo ≫ Thinkpad P50 Firmware Version < n1eet92w
Lenovo ≫ Thinkpad P52 Firmware Version < n2cet60w
Lenovo ≫ Thinkpad P52s Firmware Version < n27et43w
Lenovo ≫ Thinkpad P50s Firmware Version < n1ket52w
Lenovo ≫ Thinkpad L570 Firmware Version < n1xet74w
Lenovo ≫ Thinkpad P17 Gen 1 Firmware Version < 2021-10-29
Lenovo ≫ Thinkpad L580 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad P14s Gen 1 Firmware Version < n2xet32w
Lenovo ≫ Thinkpad P14s Gen 2 Firmware Version < n34et42w
Lenovo ≫ Thinkpad P15 Gen 1 Firmware Version < 2021-10-29
Lenovo ≫ Thinkpad P15s Gen 1 Firmware Version < n2xet32w
Lenovo ≫ Thinkpad P15s Gen 2 Firmware Version < n34et42w
Lenovo ≫ Thinkpad L590 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad L380 Yoga Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad L490 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad L560 Firmware Version < n1het92w
Lenovo ≫ Thinkpad P1 Firmware Version < n2eet54w
Lenovo ≫ Thinkpad P1 Gen 2 Firmware Version < n2oet53w
Lenovo ≫ Thinkpad P1 Gen 3 Firmware Version < n2vet33w
Lenovo ≫ Thinkpad L480 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad L470 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad L460 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad E490 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad Helix Firmware Version < n17etb6w
Lenovo ≫ Thinkpad L390 Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad L390 Yoga Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad E15 Gen 3 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad L14 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad L13 Gen 2 Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad L15 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad L15 Gen 2 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad L13 Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad E14 Gen 3 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad E590 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad E580 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad L13 Yoga Gen 2 Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad E570 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad L13 Yoga Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad 11e 3rd Gen Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad E480 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad E14 Firmware Version <= 2021-10-15
Lenovo ≫ Thinkpad E470 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad E15 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad E15 Gen 2 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad 25 Firmware Version < n1qet92w
Lenovo ≫ Thinkpad E14 Gen 2 Firmware Version < 2021-10-15
Lenovo ≫ Thinkpad 13 Gen 2 Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad 11e 4th Gen Firmware Version < 2021-10-31
Lenovo ≫ Thinkpad 11e Yoga Gen 6 Firmware Version < 2021-10-31
Lenovo ≫ Ideapad S940-14iwl Firmware Version <= 12.0.81.1753
Lenovo ≫ Ideapad Yoga S940-14iwl Firmware Version <= 12.0.81.1753
Lenovo ≫ V330-15isk Firmware Version <= 11.8.86.3877
Lenovo ≫ V330-15ikb Firmware Version <= 11.8.86.3877
Lenovo ≫ V130-15igm Firmware Version <= 6vcn42ww
Lenovo ≫ Thinkpad X1 Yoga 4th Gen Firmware Version < n2qet42w
Lenovo ≫ Thinkpad X1 Carbon Gen 7 Firmware Version < n2qet42w
Lenovo ≫ Thinkpad X1 Carbon Gen 8 Firmware Version < n2qet42w
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.04% | 0.098 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
nvd@nist.gov | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|
psirt@lenovo.com | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.