A vulnerability has been identified in some Lenovo products that use UEFI (BIOS) code developed by American Megatrends, Inc. (AMI). With this vulnerability, conditions exist where an attacker with administrative privileges or physical access to a system may be able to run specially crafted code that can allow them to bypass system protections such as Device Guard and Hyper-V.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Lenovo
Subscribe
|
63
Subscribe
63 Firmware
Subscribe
H50-30g
Subscribe
H50-30g Firmware
Subscribe
Ideacentre 300-20ish
Subscribe
Ideacentre 300-20ish Firmware
Subscribe
Ideacentre 300s-11ish
Subscribe
Ideacentre 300s-11ish Firmware
Subscribe
Ideacentre 510s-08ish
Subscribe
Ideacentre 510s-08ish Firmware
Subscribe
Ideacentre 510s-23isu
Subscribe
Ideacentre 510s-23isu Firmware
Subscribe
Ideacentre 700
Subscribe
Ideacentre 700 Firmware
Subscribe
M4500
Subscribe
M4500 Firmware
Subscribe
M4500 Id
Subscribe
M4500 Id Firmware
Subscribe
M4550 Id
Subscribe
M4550 Id Firmware
Subscribe
S200z
Subscribe
S200z Firmware
Subscribe
S500
Subscribe
S500 Firmware
Subscribe
Thinkcentre E73
Subscribe
Thinkcentre E73 Firmware
Subscribe
Thinkcentre E73s
Subscribe
Thinkcentre E73s Firmware
Subscribe
Thinkcentre E73z \(aio\)
Subscribe
Thinkcentre E73z \(aio\) Firmware
Subscribe
Thinkcentre E74
Subscribe
Thinkcentre E74 Firmware
Subscribe
Thinkcentre E74s
Subscribe
Thinkcentre E74s Firmware
Subscribe
Thinkcentre E74z
Subscribe
Thinkcentre E74z Firmware
Subscribe
Thinkcentre E75 T\/s
Subscribe
Thinkcentre E75 T\/s Firmware
Subscribe
Thinkcentre E79
Subscribe
Thinkcentre E79 Firmware
Subscribe
Thinkcentre E93
Subscribe
Thinkcentre E93 Firmware
Subscribe
Thinkcentre E93z \(aio\)
Subscribe
Thinkcentre E93z \(aio\) Firmware
Subscribe
Thinkcentre Edge 62z
Subscribe
Thinkcentre Edge 62z Firmware
Subscribe
Thinkcentre M4500k
Subscribe
Thinkcentre M4500k Firmware
Subscribe
Thinkcentre M4500q
Subscribe
Thinkcentre M4500q Firmware
Subscribe
Thinkcentre M4500t\/s
Subscribe
Thinkcentre M4500t\/s Firmware
Subscribe
Thinkcentre M4600t\/s
Subscribe
Thinkcentre M4600t\/s Firmware
Subscribe
Thinkcentre M600
Subscribe
Thinkcentre M600 Firmware
Subscribe
Thinkcentre M610
Subscribe
Thinkcentre M610 Firmware
Subscribe
Thinkcentre M6500t\/s
Subscribe
Thinkcentre M6500t\/s Firmware
Subscribe
Thinkcentre M6600
Subscribe
Thinkcentre M6600 Firmware
Subscribe
Thinkcentre M6600q
Subscribe
Thinkcentre M6600q Firmware
Subscribe
Thinkcentre M6600t\/s
Subscribe
Thinkcentre M6600t\/s Firmware
Subscribe
Thinkcentre M700
Subscribe
Thinkcentre M700 Firmware
Subscribe
Thinkcentre M700z
Subscribe
Thinkcentre M700z Firmware
Subscribe
Thinkcentre M710t\/s
Subscribe
Thinkcentre M710t\/s Firmware
Subscribe
Thinkcentre M715q
Subscribe
Thinkcentre M715q Firmware
Subscribe
Thinkcentre M7200z
Subscribe
Thinkcentre M7200z Firmware
Subscribe
Thinkcentre M7250z
Subscribe
Thinkcentre M7250z Firmware
Subscribe
Thinkcentre M72e
Subscribe
Thinkcentre M72e Firmware
Subscribe
Thinkcentre M73
Subscribe
Thinkcentre M7300z
Subscribe
Thinkcentre M7300z Firmware
Subscribe
Thinkcentre M73 Firmware
Subscribe
Thinkcentre M73p
Subscribe
Thinkcentre M73p Firmware
Subscribe
Thinkcentre M73z \(aio\)
Subscribe
Thinkcentre M73z \(aio\) Firmware
Subscribe
Thinkcentre M79
Subscribe
Thinkcentre M79 Firmware
Subscribe
Thinkcentre M800
Subscribe
Thinkcentre M800 Firmware
Subscribe
Thinkcentre M800z
Subscribe
Thinkcentre M800z Firmware
Subscribe
Thinkcentre M810z
Subscribe
Thinkcentre M810z Firmware
Subscribe
Thinkcentre M8200z
Subscribe
Thinkcentre M8200z Firmware
Subscribe
Thinkcentre M8250z
Subscribe
Thinkcentre M8250z Firmware
Subscribe
Thinkcentre M83
Subscribe
Thinkcentre M8300z
Subscribe
Thinkcentre M8300z Firmware
Subscribe
Thinkcentre M8350z
Subscribe
Thinkcentre M8350z Firmware
Subscribe
Thinkcentre M83 Firmware
Subscribe
Thinkcentre M83z \(aio\)
Subscribe
Thinkcentre M83z \(aio\) Firmware
Subscribe
Thinkcentre M8500t\/s
Subscribe
Thinkcentre M8500t\/s Firmware
Subscribe
Thinkcentre M8600t\/s
Subscribe
Thinkcentre M8600t\/s Firmware
Subscribe
Thinkcentre M900
Subscribe
Thinkcentre M900 Firmware
Subscribe
Thinkcentre M900z
Subscribe
Thinkcentre M900z Firmware
Subscribe
Thinkcentre M910q
Subscribe
Thinkcentre M910q Firmware
Subscribe
Thinkcentre M910t\/s
Subscribe
Thinkcentre M910t\/s Firmware
Subscribe
Thinkcentre M910x
Subscribe
Thinkcentre M910x Firmware
Subscribe
Thinkcentre M92
Subscribe
Thinkcentre M92 Firmware
Subscribe
Thinkcentre M92p
Subscribe
Thinkcentre M92p Firmware
Subscribe
Thinkcentre M93
Subscribe
Thinkcentre M93 Firmware
Subscribe
Thinkcentre M93p
Subscribe
Thinkcentre M93p Firmware
Subscribe
Thinkcentre M9500z
Subscribe
Thinkcentre M9500z Firmware
Subscribe
Thinkcentre M9550z
Subscribe
Thinkcentre M9550z Firmware
Subscribe
Thinkcentre X1 Aio
Subscribe
Thinkcentre X1 Aio Firmware
Subscribe
Thinkserver Rd340
Subscribe
Thinkserver Rd340 Firmware
Subscribe
Thinkserver Rd440
Subscribe
Thinkserver Rd440 Firmware
Subscribe
Thinkserver Rd540
Subscribe
Thinkserver Rd540 Firmware
Subscribe
Thinkserver Rd640 Firmware
Subscribe
Thinkserver Rq750
Subscribe
Thinkserver Rq750 Firmware
Subscribe
Thinkserver Rs140
Subscribe
Thinkserver Rs140 Firmware
Subscribe
Thinkserver Td340
Subscribe
Thinkserver Td340 Firmware
Subscribe
Thinkserver Ts140
Subscribe
Thinkserver Ts140 Firmware
Subscribe
Thinkserver Ts150
Subscribe
Thinkserver Ts150 Firmware
Subscribe
Thinkserver Ts240
Subscribe
Thinkserver Ts240 Firmware
Subscribe
Thinkserver Ts250
Subscribe
Thinkserver Ts250 Firmware
Subscribe
Thinkserver Ts450
Subscribe
Thinkserver Ts450 Firmware
Subscribe
Thinkserver Ts550
Subscribe
Thinkserver Ts550 Firmware
Subscribe
Thinkstation C30 \(1136\)
Subscribe
Thinkstation C30 \(1136\) Firmware
Subscribe
Thinkstation C30 \(1137\)
Subscribe
Thinkstation C30 \(1137\) Firmware
Subscribe
Thinkstation D30 \(4353\)
Subscribe
Thinkstation D30 \(4353\) Firmware
Subscribe
Thinkstation D30 \(4354\)
Subscribe
Thinkstation D30 \(4354\) Firmware
Subscribe
Thinkstation E31
Subscribe
Thinkstation E31 Firmware
Subscribe
Thinkstation E32
Subscribe
Thinkstation E32 Firmware
Subscribe
Thinkstation P300
Subscribe
Thinkstation P300 Firmware
Subscribe
Thinkstation P310
Subscribe
Thinkstation P310 Firmware
Subscribe
Thinkstation P320
Subscribe
Thinkstation P320 Firmware
Subscribe
Thinkstation P410
Subscribe
Thinkstation P410 Firmware
Subscribe
Thinkstation P500
Subscribe
Thinkstation P500 Firmware
Subscribe
Thinkstation P510
Subscribe
Thinkstation P510 Firmware
Subscribe
Thinkstation P700
Subscribe
Thinkstation P700 Firmware
Subscribe
Thinkstation P710
Subscribe
Thinkstation P710 Firmware
Subscribe
Thinkstation P900
Subscribe
Thinkstation P900 Firmware
Subscribe
Thinkstation P910
Subscribe
Thinkstation P910 Firmware
Subscribe
Thinkstation S30 \(4351\)
Subscribe
Thinkstation S30 \(4351\) Firmware
Subscribe
Thinkstation S30 \(4352\)
Subscribe
Thinkstation S30 \(4352\) Firmware
Subscribe
V320-15iap
Subscribe
V320-15iap Firmware
Subscribe
Yangtian Afh110
Subscribe
Yangtian Afh110 Firmware
Subscribe
Yangtian Afh81
Subscribe
Yangtian Afh81 Firmware
Subscribe
Yangtian Afq150
Subscribe
Yangtian Afq150 Firmware
Subscribe
Yangtian Mc Carrizo-l
Subscribe
Yangtian Mc Carrizo-l Firmware
Subscribe
Yangtian Mc Godavari
Subscribe
Yangtian Mc Godavari Firmware
Subscribe
Yangtian Mc H110
Subscribe
Yangtian Mc H110 Firmware
Subscribe
Yangtian Mc H81
Subscribe
Yangtian Mc H81 Firmware
Subscribe
Yangtian Me\/we H110 Firmware
Subscribe
Yangtian Mf\/wf H81
Subscribe
Yangtian Mf\/wf H81 Firmware
Subscribe
Yangtian S3040
Subscribe
Yangtian S3040 Firmware
Subscribe
Yangtian S800 Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-12870 | A vulnerability has been identified in some Lenovo products that use UEFI (BIOS) code developed by American Megatrends, Inc. (AMI). With this vulnerability, conditions exist where an attacker with administrative privileges or physical access to a system may be able to run specially crafted code that can allow them to bypass system protections such as Device Guard and Hyper-V. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://support.lenovo.com/us/en/product_security/LEN-14695 |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: lenovo
Published:
Updated: 2024-09-16T20:47:47.220Z
Reserved: 2016-12-16T00:00:00
Link: CVE-2017-3753
No data.
Status : Deferred
Published: 2017-08-10T00:29:00.230
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-3753
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD