6.7
CVE-2023-45076
- EPSS 0.04%
- Published 08.11.2023 23:15:11
- Last modified 21.11.2024 08:26:20
- Source psirt@lenovo.com
- Teams watchlist Login
- Open Login
A memory leakage vulnerability was reported in the 534D0140 DXE driver that may allow a local attacker with elevated privileges to write to NVRAM variables.
Data is provided by the National Vulnerability Database (NVD)
Lenovo ≫ Ideacentre C5-14imb05 Firmware Version < o4hkt3ca
Lenovo ≫ Ideacentre 3-07ada05 Firmware Version < o4fkt39a
Lenovo ≫ Ideacentre 3-07imb05 Firmware Version < m2vkt21a
Lenovo ≫ Ideacentre G5-14imb05 Firmware Version < o4hkt3ca
Lenovo ≫ Ideacentre 5-14iob6 Firmware Version < m3gkt3da
Lenovo ≫ Ideacentre Creator 5-14iob6 Firmware Version < m3gkt3da
Lenovo ≫ Ideacentre G5-14amr05 Firmware Version < o4zkt2ba
Lenovo ≫ Ideacentre G5-14imb05 Firmware Version < o4hkt3ca
Lenovo ≫ Ideacentre Gaming 5-14iob6 Firmware Version < m3gkt3da
Lenovo ≫ Ideacentre Mini 5 01iaq7 Firmware Version < o53kt10a
Lenovo ≫ Ideacentre Mini 5-01imh05 Firmware Version < o4ekt1ba
Lenovo ≫ Legion T7-34imz5 Firmware Version < o5fkt17a
Lenovo ≫ Thinkcentre M625q Firmware Version < m1wkt52a
Lenovo ≫ Thinkcentre M630e Firmware Version-
Lenovo ≫ Thinkcentre M70a Firmware Version < m2skt29a
Lenovo ≫ Thinkcentre M920z All-in-one Firmware Version < m1mkt56a
Lenovo ≫ Thinkcentre M920x Firmware Version < m1ukt72a
Lenovo ≫ Thinkcentre M920t Firmware Version < m1ukt72a
Lenovo ≫ Thinkcentre M920s Firmware Version < m1ukt72a
Lenovo ≫ Thinkcentre M920q Firmware Version < m1ukt72a
Lenovo ≫ Thinkcentre M90t Firmware Version < m2tkt55a
Lenovo ≫ Thinkcentre M90s Firmware Version < m2tkt55a
Lenovo ≫ Thinkcentre M90q Tiny Firmware Version < m2wkt5aa
Lenovo ≫ Thinkcentre M90a Firmware Version < m2rkt57a
Lenovo ≫ Thinkcentre M820z All-in-one Firmware Version < m1nkt62a
Lenovo ≫ Thinkcentre M80t Firmware Version < m2tkt55a
Lenovo ≫ Thinkcentre M80s Firmware Version < m2tkt55a
Lenovo ≫ Thinkcentre M80q Firmware Version < m2wkt5aa
Lenovo ≫ Thinkcentre M75t Gen 2 Firmware Version-
Lenovo ≫ Thinkcentre M75s Gen 2 Firmware Version-
Lenovo ≫ Thinkcentre M75q Gen 2 Firmware Version < m47kt30a
Lenovo ≫ Thinkcentre M75n Firmware Version < m33kt27a
Lenovo ≫ Thinkcentre M720t Firmware Version < m1ukt72a
Lenovo ≫ Thinkcentre M720s Firmware Version < m1ukt72a
Lenovo ≫ Thinkcentre M720q Firmware Version < m1ukt72a
Lenovo ≫ Thinkcentre M70t Firmware Version < m2tkt55a
Lenovo ≫ Thinkcentre M70s Firmware Version < m2tkt55a
Lenovo ≫ Thinkcentre M70q Firmware Version < m2wkt5aa
Lenovo ≫ Thinkcentre M70c Firmware Version < m2vkt21a
Lenovo ≫ V50t-13iob G2 Firmware Version < m3gkt3da
Lenovo ≫ V55t Gen 2 13acn Firmware Version < o5jkt23a
Lenovo ≫ V50t-13imh Firmware Version < m4pkt13a
Lenovo ≫ V50t-13imb Firmware Version < o4hkt3ca
Lenovo ≫ V50s-07imb Firmware Version < m2vkt21a
Lenovo ≫ V50a-24imb Firmware Version < m36kt32a
Lenovo ≫ V50a-22imb Firmware Version < m36kt32a
Lenovo ≫ V30a-24iml Firmware Version < m37kt31a
Lenovo ≫ V30a-22iml Firmware Version < m37kt31a
Lenovo ≫ Thinkcentre M70c Firmware Version < m2vkt21a
Lenovo ≫ Thinkedge Se30 Firmware Version < m3fkt2da
Lenovo ≫ Thinkstation P920 Workstation Firmware Version-
Lenovo ≫ Thinkstation P720 Workstation Firmware Version-
Lenovo ≫ Thinkstation P520c Workstation Firmware Version-
Lenovo ≫ Thinkstation P520 Workstation Firmware Version-
Lenovo ≫ Thinkstation P360 Workstation Firmware Version-
Lenovo ≫ Thinkstation P360 Workstation Firmware Version < s0ekt45a
Lenovo ≫ Thinkstation P350 Workstation Firmware Version-
Lenovo ≫ Thinkstation P348 Workstation Firmware Version < m3kkt3ba
Lenovo ≫ Thinkstation P340 Workstation Firmware Version < s08kt55a
Lenovo ≫ Thinkstation P340 Tiny Workstation Firmware Version < m2wkt5aa
Lenovo ≫ Thinkstation P330 Workstation 2nd Gen Firmware Version < m1vkt72a
Lenovo ≫ Thinkstation P330 Workstation Firmware Version < m1vkt72a
Lenovo ≫ Thinkstation P330 Tiny Workstation Firmware Version < m1ukt72a
Lenovo ≫ Thinkstation P320 Workstation Firmware Version < s06kt64a
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.04% | 0.089 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
psirt@lenovo.com | 6.7 | 0.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
CWE-125 Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.