A potential vulnerability by a driver used during manufacturing process on some consumer Lenovo Notebook devices' BIOS that was mistakenly not deactivated may allow an attacker with elevated privileges to modify secure boot setting by modifying an NVRAM variable.

Project Subscriptions

Vendors Products
Ideapad 3-14ada05 Subscribe
Ideapad 3-14ada05 Firmware Subscribe
Ideapad 3-14ada6 Subscribe
Ideapad 3-14ada6 Firmware Subscribe
Ideapad 3-14alc6 Subscribe
Ideapad 3-14alc6 Firmware Subscribe
Ideapad 3-14are05 Subscribe
Ideapad 3-14are05 Firmware Subscribe
Ideapad 3-14igl05 Subscribe
Ideapad 3-14igl05 Firmware Subscribe
Ideapad 3-14iil05 Subscribe
Ideapad 3-14iil05 Firmware Subscribe
Ideapad 3-14iml05 Subscribe
Ideapad 3-14iml05 Firmware Subscribe
Ideapad 3-14itl05 Subscribe
Ideapad 3-14itl05 Firmware Subscribe
Ideapad 3-14itl6 Subscribe
Ideapad 3-14itl6 Firmware Subscribe
Ideapad 3-15ada05 Subscribe
Ideapad 3-15ada05 Firmware Subscribe
Ideapad 3-15ada6 Subscribe
Ideapad 3-15ada6 Firmware Subscribe
Ideapad 3-15alc6 Subscribe
Ideapad 3-15alc6 Firmware Subscribe
Ideapad 3-15are05 Subscribe
Ideapad 3-15are05 Firmware Subscribe
Ideapad 3-15igl05 Subscribe
Ideapad 3-15igl05 Firmware Subscribe
Ideapad 3-15iil05 Subscribe
Ideapad 3-15iil05 Firmware Subscribe
Ideapad 3-15iml05 Subscribe
Ideapad 3-15iml05 Firmware Subscribe
Ideapad 3-15itl05 Subscribe
Ideapad 3-15itl05 Firmware Subscribe
Ideapad 3-15itl6 Subscribe
Ideapad 3-15itl6 Firmware Subscribe
Ideapad 3-17ada05 Subscribe
Ideapad 3-17ada05 Firmware Subscribe
Ideapad 3-17ada6 Subscribe
Ideapad 3-17ada6 Firmware Subscribe
Ideapad 3-17alc6 Subscribe
Ideapad 3-17alc6 Firmware Subscribe
Ideapad 3-17are05 Subscribe
Ideapad 3-17are05 Firmware Subscribe
Ideapad 3-17iil05 Subscribe
Ideapad 3-17iil05 Firmware Subscribe
Ideapad 3-17iml05 Subscribe
Ideapad 3-17iml05 Firmware Subscribe
Ideapad 3-17itl6 Subscribe
Ideapad 3-17itl6 Firmware Subscribe
Ideapad 5-15are05 Subscribe
Ideapad 5-15are05 Firmware Subscribe
Ideapad 5-15iil05 Subscribe
Ideapad 5-15iil05 Firmware Subscribe
Ideapad Creator 5-15imh05 Subscribe
Ideapad Creator 5-15imh05 Firmware Subscribe
Ideapad Gaming 3-15arh05 Subscribe
Ideapad Gaming 3-15arh05 Firmware Subscribe
Ideapad Gaming 3-15imh05 Subscribe
Ideapad Gaming 3-15imh05 Firmware Subscribe
L3-15itl6 Subscribe
L3-15itl6 Firmware Subscribe
L340-15irh Subscribe
L340-15irh Firmware Subscribe
L340-15iwl Subscribe
L340-15iwl Firmware Subscribe
L340-15iwl Touch Subscribe
L340-15iwl Touch Firmware Subscribe
L340-17irh Subscribe
L340-17irh Firmware Subscribe
L340-17iwl Subscribe
L340-17iwl Firmware Subscribe
L3 15iml05 Subscribe
L3 15iml05 Firmware Subscribe
Legion 5-15ach6 Subscribe
Legion 5-15ach6 Firmware Subscribe
Legion 5-15ach6a Subscribe
Legion 5-15ach6a Firmware Subscribe
Legion 5-15ach6h Subscribe
Legion 5-15ach6h Firmware Subscribe
Legion 5-15imh6 Subscribe
Legion 5-15imh6 Firmware Subscribe
Legion 5-15ith6 Subscribe
Legion 5-15ith6 Firmware Subscribe
Legion 5-15ith6h Subscribe
Legion 5-15ith6h Firmware Subscribe
Legion 5-17ach6 Subscribe
Legion 5-17ach6 Firmware Subscribe
Legion 5-17ach6h Subscribe
Legion 5-17ach6h Firmware Subscribe
Legion 5-17ith6 Subscribe
Legion 5-17ith6 Firmware Subscribe
Legion 5-17ith6h Subscribe
Legion 5-17ith6h Firmware Subscribe
Legion 5 Pro-16ach6 Subscribe
Legion 5 Pro-16ach6 Firmware Subscribe
Legion 5 Pro-16ach6h Subscribe
Legion 5 Pro-16ach6h Firmware Subscribe
Legion 5 Pro-16ith6 Subscribe
Legion 5 Pro-16ith6 Firmware Subscribe
Legion 5 Pro-16ith6h Subscribe
Legion 5 Pro-16ith6h Firmware Subscribe
Legion 7-16achg6 Subscribe
Legion 7-16achg6 Firmware Subscribe
Legion 7-16ithg6 Subscribe
Legion 7-16ithg6 Firmware Subscribe
Legion S7-15ach6 Subscribe
Legion S7-15ach6 Firmware Subscribe
Legion Y540-15irh Subscribe
Legion Y540-15irh-pg0 Subscribe
Legion Y540-15irh-pg0 Firmware Subscribe
Legion Y540-15irh Firmware Subscribe
Legion Y540-17irh Subscribe
Legion Y540-17irh-pg0 Subscribe
Legion Y540-17irh-pg0 Firmware Subscribe
Legion Y540-17irh Firmware Subscribe
Legion Y545 Subscribe
Legion Y545-pg0 Subscribe
Legion Y545-pg0 Firmware Subscribe
Legion Y545 Firmware Subscribe
Legion Y7000-2019 Subscribe
Legion Y7000-2019-pg0 Subscribe
Legion Y7000-2019-pg0 Firmware Subscribe
Legion Y7000-2019 Firmware Subscribe
S145-14api Subscribe
S145-14api Firmware Subscribe
S145-14ast Subscribe
S145-14ast Firmware Subscribe
S145-14igm Subscribe
S145-14igm Firmware Subscribe
S145-14iil Subscribe
S145-14iil Firmware Subscribe
S145-15api Subscribe
S145-15api Firmware Subscribe
S145-15ast Subscribe
S145-15ast Firmware Subscribe
S145-15igm Subscribe
S145-15igm Firmware Subscribe
S145-15iil Subscribe
S145-15iil Firmware Subscribe
S14 G2 Itl Subscribe
S14 G2 Itl Firmware Subscribe
S540-13api Subscribe
S540-13api Firmware Subscribe
S540-13iml Subscribe
S540-13iml Firmware Subscribe
Slim 7 Pro-14ihu5 Subscribe
Slim 7 Pro-14ihu5 Firmware Subscribe
Slim 9-14itl05 Subscribe
Slim 9-14itl05 Firmware Subscribe
V14-ada Subscribe
V14-ada Firmware Subscribe
V14-are Subscribe
V14-are Firmware Subscribe
V14-igl Subscribe
V14-igl Firmware Subscribe
V14-iil Subscribe
V14-iil Firmware Subscribe
V140-15iwl Subscribe
V140-15iwl Firmware Subscribe
V14 G1-iml Subscribe
V14 G1-iml Firmware Subscribe
V14 G2-acl Subscribe
V14 G2-acl Firmware Subscribe
V14 G2-itl Subscribe
V14 G2-itl Firmware Subscribe
V15-ada Subscribe
V15-ada Firmware Subscribe
V15-igl Subscribe
V15-igl Firmware Subscribe
V15-iil Subscribe
V15-iil Firmware Subscribe
V15 G1-iml Subscribe
V15 G1-iml Firmware Subscribe
V15 G2-alc Subscribe
V15 G2-alc Firmware Subscribe
V15 G2-itl Subscribe
V15 G2-itl Firmware Subscribe
V17-iil Subscribe
V17-iil Firmware Subscribe
V17 G2-itl Subscribe
V17 G2-itl Firmware Subscribe
V340-17iwl Subscribe
V340-17iwl Firmware Subscribe
Yoga 7-14acn6 Subscribe
Yoga 7-14acn6 Firmware Subscribe
Yoga C740-14iml Subscribe
Yoga C740-14iml Firmware Subscribe
Yoga C740-15iml Subscribe
Yoga C740-15iml Firmware Subscribe
Yoga C940-14iil Subscribe
Yoga C940-14iil Firmware Subscribe
Yoga Slim 7 Pro-14ach5 Subscribe
Yoga Slim 7 Pro-14ach5 D Subscribe
Yoga Slim 7 Pro-14ach5 D Firmware Subscribe
Yoga Slim 7 Pro-14ach5 Firmware Subscribe
Yoga Slim 7 Pro-14ach5 O Subscribe
Yoga Slim 7 Pro-14ach5 O Firmware Subscribe
Yoga Slim 7 Pro-14ach5 Od Subscribe
Yoga Slim 7 Pro-14ach5 Od Firmware Subscribe
Yoga Slim 7 Pro-14arh5 Subscribe
Yoga Slim 7 Pro-14arh5 Firmware Subscribe
Yoga Slim 7 Pro-14ihu5 Subscribe
Yoga Slim 7 Pro-14ihu5 Firmware Subscribe
Yoga Slim 7 Pro-14ihu5 O Subscribe
Yoga Slim 7 Pro-14ihu5 O Firmware Subscribe
Yoga Slim 7 Pro-14itl5 Subscribe
Yoga Slim 7 Pro-14itl5 Firmware Subscribe
Yoga Slim 9-14itl05 Subscribe
Yoga Slim 9-14itl05 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2021-27177 A potential vulnerability by a driver used during manufacturing process on some consumer Lenovo Notebook devices' BIOS that was mistakenly not deactivated may allow an attacker with elevated privileges to modify secure boot setting by modifying an NVRAM variable.
Fixes

Solution

Update system firmware to the version (or newer) indicated for your model in the Product Impact section of LEN-73440.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2024-08-03T17:09:09.723Z

Reserved: 2021-11-17T00:00:00

Link: CVE-2021-3972

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-04-22T21:15:09.883

Modified: 2024-11-21T06:23:16.210

Link: CVE-2021-3972

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses