6.7

CVE-2023-4029

A buffer overflow has been identified in the BoardUpdateAcpiDxe driver in some Lenovo ThinkPad products which may allow an attacker with local access and elevated privileges to execute arbitrary code.

Data is provided by the National Vulnerability Database (NVD)
LenovoK14 Type 21cu Firmware Version < 1.12
   LenovoK14 Type 21cu Version-
LenovoK14 Type 21cv Firmware Version < 1.12
   LenovoK14 Type 21cv Version-
LenovoThinkpad E14 Gen 3 Firmware Version < 1.15
   LenovoThinkpad E14 Gen 3 Version-
LenovoThinkpad E15 Gen 3 Firmware Version < 1.15
   LenovoThinkpad E15 Gen 3 Version-
LenovoThinkpad L13 Gen 2 Firmware Version < 1.30
   LenovoThinkpad L13 Gen 2 Version-
LenovoThinkpad L13 Gen 3 Firmware Version < 1.19
   LenovoThinkpad L13 Gen 3 Version-
LenovoThinkpad L13 Gen 4 Firmware Version < 1.10
   LenovoThinkpad L13 Gen 4 Version-
LenovoThinkpad L14 Gen 2 Firmware Version < 1.28
   LenovoThinkpad L14 Gen 2 Version-
LenovoThinkpad L14 Gen 3 Firmware Version < 1.23
   LenovoThinkpad L14 Gen 3 Version-
LenovoThinkpad L14 Gen 4 Firmware Version < 1.06
   LenovoThinkpad L14 Gen 4 Version-
LenovoThinkpad L15 Gen 2 Firmware Version < 1.28
   LenovoThinkpad L15 Gen 2 Version-
LenovoThinkpad L15 Gen 3 Firmware Version < 1.23
   LenovoThinkpad L15 Gen 3 Version-
LenovoThinkpad L15 Gen 4 Firmware Version < 1.06
   LenovoThinkpad L15 Gen 4 Version-
LenovoThinkpad P14s Gen 2 Firmware Version < 1.34
   LenovoThinkpad P14s Gen 2 Version-
LenovoThinkpad T14 Gen 2 Firmware Version < 1.34
   LenovoThinkpad T14 Gen 2 Version-
LenovoThinkpad T14s Gen 2 Firmware Version < 1.37
   LenovoThinkpad T14s Gen 2 Version-
LenovoThinkpad S2 Gen 6 Firmware Version < 1.30
   LenovoThinkpad S2 Gen 6 Version-
LenovoThinkpad S2 Gen 7 Firmware Version < 1.19
   LenovoThinkpad S2 Gen 7 Version-
LenovoThinkpad S2 Gen 8 Firmware Version < 1.10
   LenovoThinkpad S2 Gen 8 Version-
LenovoThinkpad X13 Gen 2 Firmware Version < 1.37
   LenovoThinkpad X13 Gen 2 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.04% 0.102
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 6.7 0.8 5.9
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
psirt@lenovo.com 6.7 0.8 5.9
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')

The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.