A vulnerability has been identified in some Lenovo Notebook and ThinkServer systems where an attacker with administrative privileges on a system could install a program that circumvents Intel Management Engine (ME) protections. This could result in a denial of service or privilege escalation attack on the system.

Project Subscriptions

Vendors Products
Notebook 110 14ibr Subscribe
Notebook 110 14ibr Bios Subscribe
Notebook 110 15ibr Subscribe
Notebook 110 15ibr Bios Subscribe
Notebook B70 80 Subscribe
Notebook B70 80 Bios Subscribe
Notebook E31 80 Subscribe
Notebook E31 80 Bios Subscribe
Notebook E40 80 Subscribe
Notebook E40 80 Bios Subscribe
Notebook E41 80 Subscribe
Notebook E41 80 Bios Subscribe
Notebook E51 80 Subscribe
Notebook E51 80 Bios Subscribe
Notebook G40 80 Subscribe
Notebook G40 80 Bios Subscribe
Notebook G50 80 Subscribe
Notebook G50 80 Bios Subscribe
Notebook G50 80 Touch Subscribe
Notebook G50 80 Touch Bios Subscribe
Notebook Ideapad 300 14ibr Subscribe
Notebook Ideapad 300 14ibr Bios Subscribe
Notebook Ideapad 300 14isk Subscribe
Notebook Ideapad 300 14isk Bios Subscribe
Notebook Ideapad 300 15ibr Subscribe
Notebook Ideapad 300 15ibr Bios Subscribe
Notebook Ideapad 300 15isk Subscribe
Notebook Ideapad 300 15isk Bios Subscribe
Notebook Ideapad 300 17isk Subscribe
Notebook Ideapad 300 17isk Bios Subscribe
Notebook Ideapad 510s 12isk Subscribe
Notebook Ideapad 510s 12isk Bios Subscribe
Notebook K21 80 Subscribe
Notebook K21 80 Bios Subscribe
Notebook K41 80 Subscribe
Notebook K41 80 Bios Subscribe
Notebook Miix 710 12ikb Subscribe
Notebook Miix 710 12ikb Bios Subscribe
Notebook Xiaoxin Air 12 Subscribe
Notebook Xiaoxin Air 12 Bios Subscribe
Notebook Yoga 510 14isk Subscribe
Notebook Yoga 510 14isk Bios Subscribe
Notebook Yoga 510 15isk Subscribe
Notebook Yoga 510 15isk Bios Subscribe
Notebook Yoga 710 11ikb Subscribe
Notebook Yoga 710 11ikb Bios Subscribe
Notebook Yoga 710 11isk Subscribe
Notebook Yoga 710 11isk Bios Subscribe
Notebook Yoga 900 13isk Subscribe
Notebook Yoga 900 13isk Bios Subscribe
Notebook Yoga 900s 12isk Subscribe
Notebook Yoga 900s 12isk Bios Subscribe
Thinkserver Ts150 Subscribe
Thinkserver Ts150 Bios Subscribe
Thinkserver Ts450 Subscribe
Thinkserver Ts450 Bios Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2016-9072 A vulnerability has been identified in some Lenovo Notebook and ThinkServer systems where an attacker with administrative privileges on a system could install a program that circumvents Intel Management Engine (ME) protections. This could result in a denial of service or privilege escalation attack on the system.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2024-08-06T02:13:21.877Z

Reserved: 2016-09-16T00:00:00

Link: CVE-2016-8224

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2016-11-29T20:59:02.437

Modified: 2025-04-12T10:46:40.837

Link: CVE-2016-8224

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses