A vulnerability has been identified in some Lenovo products that use UEFI (BIOS) code developed by American Megatrends, Inc. (AMI). With this vulnerability, conditions exist where an attacker with administrative privileges or physical access to a system may be able to run specially crafted code that can allow them to bypass system protections such as Device Guard and Hyper-V.

Project Subscriptions

Vendors Products
63 Firmware Subscribe
H50-30g Subscribe
H50-30g Firmware Subscribe
Ideacentre 300-20ish Subscribe
Ideacentre 300-20ish Firmware Subscribe
Ideacentre 300s-11ish Subscribe
Ideacentre 300s-11ish Firmware Subscribe
Ideacentre 510s-08ish Subscribe
Ideacentre 510s-08ish Firmware Subscribe
Ideacentre 510s-23isu Subscribe
Ideacentre 510s-23isu Firmware Subscribe
Ideacentre 700 Subscribe
Ideacentre 700 Firmware Subscribe
M4500 Firmware Subscribe
M4500 Id Subscribe
M4500 Id Firmware Subscribe
M4550 Id Subscribe
M4550 Id Firmware Subscribe
S200z Firmware Subscribe
S500 Firmware Subscribe
Thinkcentre E73 Subscribe
Thinkcentre E73 Firmware Subscribe
Thinkcentre E73s Subscribe
Thinkcentre E73s Firmware Subscribe
Thinkcentre E73z \(aio\) Subscribe
Thinkcentre E73z \(aio\) Firmware Subscribe
Thinkcentre E74 Subscribe
Thinkcentre E74 Firmware Subscribe
Thinkcentre E74s Subscribe
Thinkcentre E74s Firmware Subscribe
Thinkcentre E74z Subscribe
Thinkcentre E74z Firmware Subscribe
Thinkcentre E75 T\/s Subscribe
Thinkcentre E75 T\/s Firmware Subscribe
Thinkcentre E79 Subscribe
Thinkcentre E79 Firmware Subscribe
Thinkcentre E93 Subscribe
Thinkcentre E93 Firmware Subscribe
Thinkcentre E93z \(aio\) Subscribe
Thinkcentre E93z \(aio\) Firmware Subscribe
Thinkcentre Edge 62z Subscribe
Thinkcentre Edge 62z Firmware Subscribe
Thinkcentre M4500k Subscribe
Thinkcentre M4500k Firmware Subscribe
Thinkcentre M4500q Subscribe
Thinkcentre M4500q Firmware Subscribe
Thinkcentre M4500t\/s Subscribe
Thinkcentre M4500t\/s Firmware Subscribe
Thinkcentre M4600t\/s Subscribe
Thinkcentre M4600t\/s Firmware Subscribe
Thinkcentre M600 Subscribe
Thinkcentre M600 Firmware Subscribe
Thinkcentre M610 Subscribe
Thinkcentre M610 Firmware Subscribe
Thinkcentre M6500t\/s Subscribe
Thinkcentre M6500t\/s Firmware Subscribe
Thinkcentre M6600 Subscribe
Thinkcentre M6600 Firmware Subscribe
Thinkcentre M6600q Subscribe
Thinkcentre M6600q Firmware Subscribe
Thinkcentre M6600t\/s Subscribe
Thinkcentre M6600t\/s Firmware Subscribe
Thinkcentre M700 Subscribe
Thinkcentre M700 Firmware Subscribe
Thinkcentre M700z Subscribe
Thinkcentre M700z Firmware Subscribe
Thinkcentre M710t\/s Subscribe
Thinkcentre M710t\/s Firmware Subscribe
Thinkcentre M715q Subscribe
Thinkcentre M715q Firmware Subscribe
Thinkcentre M7200z Subscribe
Thinkcentre M7200z Firmware Subscribe
Thinkcentre M7250z Subscribe
Thinkcentre M7250z Firmware Subscribe
Thinkcentre M72e Subscribe
Thinkcentre M72e Firmware Subscribe
Thinkcentre M73 Subscribe
Thinkcentre M7300z Subscribe
Thinkcentre M7300z Firmware Subscribe
Thinkcentre M73 Firmware Subscribe
Thinkcentre M73p Subscribe
Thinkcentre M73p Firmware Subscribe
Thinkcentre M73z \(aio\) Subscribe
Thinkcentre M73z \(aio\) Firmware Subscribe
Thinkcentre M79 Subscribe
Thinkcentre M79 Firmware Subscribe
Thinkcentre M800 Subscribe
Thinkcentre M800 Firmware Subscribe
Thinkcentre M800z Subscribe
Thinkcentre M800z Firmware Subscribe
Thinkcentre M810z Subscribe
Thinkcentre M810z Firmware Subscribe
Thinkcentre M8200z Subscribe
Thinkcentre M8200z Firmware Subscribe
Thinkcentre M8250z Subscribe
Thinkcentre M8250z Firmware Subscribe
Thinkcentre M83 Subscribe
Thinkcentre M8300z Subscribe
Thinkcentre M8300z Firmware Subscribe
Thinkcentre M8350z Subscribe
Thinkcentre M8350z Firmware Subscribe
Thinkcentre M83 Firmware Subscribe
Thinkcentre M83z \(aio\) Subscribe
Thinkcentre M83z \(aio\) Firmware Subscribe
Thinkcentre M8500t\/s Subscribe
Thinkcentre M8500t\/s Firmware Subscribe
Thinkcentre M8600t\/s Subscribe
Thinkcentre M8600t\/s Firmware Subscribe
Thinkcentre M900 Subscribe
Thinkcentre M900 Firmware Subscribe
Thinkcentre M900z Subscribe
Thinkcentre M900z Firmware Subscribe
Thinkcentre M910q Subscribe
Thinkcentre M910q Firmware Subscribe
Thinkcentre M910t\/s Subscribe
Thinkcentre M910t\/s Firmware Subscribe
Thinkcentre M910x Subscribe
Thinkcentre M910x Firmware Subscribe
Thinkcentre M92 Subscribe
Thinkcentre M92 Firmware Subscribe
Thinkcentre M92p Subscribe
Thinkcentre M92p Firmware Subscribe
Thinkcentre M93 Subscribe
Thinkcentre M93 Firmware Subscribe
Thinkcentre M93p Subscribe
Thinkcentre M93p Firmware Subscribe
Thinkcentre M9500z Subscribe
Thinkcentre M9500z Firmware Subscribe
Thinkcentre M9550z Subscribe
Thinkcentre M9550z Firmware Subscribe
Thinkcentre X1 Aio Subscribe
Thinkcentre X1 Aio Firmware Subscribe
Thinkserver Rd340 Subscribe
Thinkserver Rd340 Firmware Subscribe
Thinkserver Rd440 Subscribe
Thinkserver Rd440 Firmware Subscribe
Thinkserver Rd540 Subscribe
Thinkserver Rd540 Firmware Subscribe
Thinkserver Rd640 Firmware Subscribe
Thinkserver Rq750 Subscribe
Thinkserver Rq750 Firmware Subscribe
Thinkserver Rs140 Subscribe
Thinkserver Rs140 Firmware Subscribe
Thinkserver Td340 Subscribe
Thinkserver Td340 Firmware Subscribe
Thinkserver Ts140 Subscribe
Thinkserver Ts140 Firmware Subscribe
Thinkserver Ts150 Subscribe
Thinkserver Ts150 Firmware Subscribe
Thinkserver Ts240 Subscribe
Thinkserver Ts240 Firmware Subscribe
Thinkserver Ts250 Subscribe
Thinkserver Ts250 Firmware Subscribe
Thinkserver Ts450 Subscribe
Thinkserver Ts450 Firmware Subscribe
Thinkserver Ts550 Subscribe
Thinkserver Ts550 Firmware Subscribe
Thinkstation C30 \(1136\) Subscribe
Thinkstation C30 \(1136\) Firmware Subscribe
Thinkstation C30 \(1137\) Subscribe
Thinkstation C30 \(1137\) Firmware Subscribe
Thinkstation D30 \(4353\) Subscribe
Thinkstation D30 \(4353\) Firmware Subscribe
Thinkstation D30 \(4354\) Subscribe
Thinkstation D30 \(4354\) Firmware Subscribe
Thinkstation E31 Subscribe
Thinkstation E31 Firmware Subscribe
Thinkstation E32 Subscribe
Thinkstation E32 Firmware Subscribe
Thinkstation P300 Subscribe
Thinkstation P300 Firmware Subscribe
Thinkstation P310 Subscribe
Thinkstation P310 Firmware Subscribe
Thinkstation P320 Subscribe
Thinkstation P320 Firmware Subscribe
Thinkstation P410 Subscribe
Thinkstation P410 Firmware Subscribe
Thinkstation P500 Subscribe
Thinkstation P500 Firmware Subscribe
Thinkstation P510 Subscribe
Thinkstation P510 Firmware Subscribe
Thinkstation P700 Subscribe
Thinkstation P700 Firmware Subscribe
Thinkstation P710 Subscribe
Thinkstation P710 Firmware Subscribe
Thinkstation P900 Subscribe
Thinkstation P900 Firmware Subscribe
Thinkstation P910 Subscribe
Thinkstation P910 Firmware Subscribe
Thinkstation S30 \(4351\) Subscribe
Thinkstation S30 \(4351\) Firmware Subscribe
Thinkstation S30 \(4352\) Subscribe
Thinkstation S30 \(4352\) Firmware Subscribe
V320-15iap Subscribe
V320-15iap Firmware Subscribe
Yangtian Afh110 Subscribe
Yangtian Afh110 Firmware Subscribe
Yangtian Afh81 Subscribe
Yangtian Afh81 Firmware Subscribe
Yangtian Afq150 Subscribe
Yangtian Afq150 Firmware Subscribe
Yangtian Mc Carrizo-l Subscribe
Yangtian Mc Carrizo-l Firmware Subscribe
Yangtian Mc Godavari Subscribe
Yangtian Mc Godavari Firmware Subscribe
Yangtian Mc H110 Subscribe
Yangtian Mc H110 Firmware Subscribe
Yangtian Mc H81 Subscribe
Yangtian Mc H81 Firmware Subscribe
Yangtian Me\/we H110 Firmware Subscribe
Yangtian Mf\/wf H81 Subscribe
Yangtian Mf\/wf H81 Firmware Subscribe
Yangtian S3040 Subscribe
Yangtian S3040 Firmware Subscribe
Yangtian S800 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2017-12870 A vulnerability has been identified in some Lenovo products that use UEFI (BIOS) code developed by American Megatrends, Inc. (AMI). With this vulnerability, conditions exist where an attacker with administrative privileges or physical access to a system may be able to run specially crafted code that can allow them to bypass system protections such as Device Guard and Hyper-V.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2024-09-16T20:47:47.220Z

Reserved: 2016-12-16T00:00:00

Link: CVE-2017-3753

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-08-10T00:29:00.230

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-3753

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses