A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to execute arbitrary code due to improper buffer validation.

Project Subscriptions

Vendors Products
Ideapad 1-14ijl7 Subscribe
Ideapad 1-14ijl7 Firmware Subscribe
Ideapad 1-15ijl7 Subscribe
Ideapad 1-15ijl7 Firmware Subscribe
Ideapad 1 14iau7 Subscribe
Ideapad 1 14iau7 Firmware Subscribe
Ideapad 1 14igl7 Subscribe
Ideapad 1 14igl7 Firmware Subscribe
Ideapad 1 15iau7 Subscribe
Ideapad 1 15iau7 Firmware Subscribe
Ideapad 1 15igl7 Subscribe
Ideapad 1 15igl7 Firmware Subscribe
Ideapad 3-14igl05 Subscribe
Ideapad 3-14igl05 Firmware Subscribe
Ideapad 3-14iil05 Subscribe
Ideapad 3-14iil05 Firmware Subscribe
Ideapad 3-14iml05 Subscribe
Ideapad 3-14iml05 Firmware Subscribe
Ideapad 3-14itl05 Subscribe
Ideapad 3-14itl05 Firmware Subscribe
Ideapad 3-14itl6 Subscribe
Ideapad 3-14itl6 Firmware Subscribe
Ideapad 3-15igl05 Subscribe
Ideapad 3-15igl05 Firmware Subscribe
Ideapad 3-15iil05 Subscribe
Ideapad 3-15iil05 Firmware Subscribe
Ideapad 3-15iml05 Subscribe
Ideapad 3-15iml05 Firmware Subscribe
Ideapad 3-15itl05 Subscribe
Ideapad 3-15itl05 Firmware Subscribe
Ideapad 3-15itl6 Subscribe
Ideapad 3-15itl6 Firmware Subscribe
Ideapad 3-17iil05 Subscribe
Ideapad 3-17iil05 Firmware Subscribe
Ideapad 3-17iml05 Subscribe
Ideapad 3-17iml05 Firmware Subscribe
Ideapad 3-17itl6 Subscribe
Ideapad 3-17itl6 Firmware Subscribe
Ideapad 3 14iau7 Subscribe
Ideapad 3 14iau7 Firmware Subscribe
Ideapad 3 15iau7 Subscribe
Ideapad 3 15iau7 Firmware Subscribe
Ideapad 3 17iau7 Subscribe
Ideapad 3 17iau7 Firmware Subscribe
Ideapad 5-15iil05 Subscribe
Ideapad 5-15iil05 Firmware Subscribe
Ideapad 5-15itl05 Subscribe
Ideapad 5-15itl05 Firmware Subscribe
Ideapad 5 15ial7 Subscribe
Ideapad 5 15ial7 Firmware Subscribe
Ideapad Creator 5-15imh05 Subscribe
Ideapad Creator 5-15imh05 Firmware Subscribe
Ideapad Gaming 3-15imh05 Subscribe
Ideapad Gaming 3-15imh05 Firmware Subscribe
L3-15iml05 Subscribe
L3-15iml05 Firmware Subscribe
L3-15itl6 Subscribe
L3-15itl6 Firmware Subscribe
Legion 5-15imh05 Subscribe
Legion 5-15imh05 Firmware Subscribe
Legion 5-15imh05h Subscribe
Legion 5-15imh05h Firmware Subscribe
Legion 5-15imh6 Subscribe
Legion 5-15imh6 Firmware Subscribe
Legion 5-15ith6 Subscribe
Legion 5-15ith6 Firmware Subscribe
Legion 5-15ith6h Subscribe
Legion 5-15ith6h Firmware Subscribe
Legion 5-17imh05 Subscribe
Legion 5-17imh05 Firmware Subscribe
Legion 5-17imh05h Subscribe
Legion 5-17imh05h Firmware Subscribe
Legion 5-17ith6 Subscribe
Legion 5-17ith6 Firmware Subscribe
Legion 5-17ith6h Subscribe
Legion 5-17ith6h Firmware Subscribe
Legion 5 15iah7 Subscribe
Legion 5 15iah7 Firmware Subscribe
Legion 5 15iah7h Subscribe
Legion 5 15iah7h Firmware Subscribe
Legion 5 Pro-16ith6 Subscribe
Legion 5 Pro-16ith6 Firmware Subscribe
Legion 5 Pro-16ith6h Subscribe
Legion 5 Pro-16ith6h Firmware Subscribe
Legion 5 Pro 16iah7 Subscribe
Legion 5 Pro 16iah7 Firmware Subscribe
Legion 5 Pro 16iah7h Subscribe
Legion 5 Pro 16iah7h Firmware Subscribe
Legion 5p-15imh05 Subscribe
Legion 5p-15imh05 Firmware Subscribe
Legion 5p-15imh05h Subscribe
Legion 5p-15imh05h Firmware Subscribe
Legion 7-16ithg6 Subscribe
Legion 7-16ithg6 Firmware Subscribe
Legion 7 16iax7 Subscribe
Legion 7 16iax7 Firmware Subscribe
S14 G2 Itl Subscribe
S14 G2 Itl Firmware Subscribe
S14 G3 Iap Subscribe
S14 G3 Iap Firmware Subscribe
S540-13itl Subscribe
S540-13itl Firmware Subscribe
Slim 7 14iap7 Subscribe
Slim 7 14iap7 Firmware Subscribe
Slim 7 Carbon 13iap7 Subscribe
Slim 7 Carbon 13iap7 Firmware Subscribe
Slim 7 Pro-14ihu5 Subscribe
Slim 7 Pro-14ihu5 Firmware Subscribe
Slim 7 Prox 14iah7 Subscribe
Slim 7 Prox 14iah7 Firmware Subscribe
Slim 9-14itl05 Subscribe
Slim 9-14itl05 Firmware Subscribe
Slim 9 14iap7 Subscribe
Slim 9 14iap7 Firmware Subscribe
Thinkbook 15p G2 Ith Subscribe
Thinkbook 15p G2 Ith Firmware Subscribe
Thinkbook 15p Imh Subscribe
Thinkbook 15p Imh Firmware Subscribe
V14-igl Subscribe
V14-igl Firmware Subscribe
V14 G1-iml Subscribe
V14 G1-iml Firmware Subscribe
V14 G2-itl Subscribe
V14 G2-itl Firmware Subscribe
V14 G2 Ijl Subscribe
V14 G2 Ijl Firmware Subscribe
V14 G3 Iap Subscribe
V14 G3 Iap Firmware Subscribe
V15-igl Subscribe
V15-igl Firmware Subscribe
V15 G1-iml Subscribe
V15 G1-iml Firmware Subscribe
V15 G2-itl Subscribe
V15 G2-itl Firmware Subscribe
V15 G2 Ijl Subscribe
V15 G2 Ijl Firmware Subscribe
V15 G3 Iap Subscribe
V15 G3 Iap Firmware Subscribe
V17-iil Subscribe
V17-iil Firmware Subscribe
V17 G2-itl Subscribe
V17 G2-itl Firmware Subscribe
V17 G3 Iap Subscribe
V17 G3 Iap Firmware Subscribe
Yoga 7-14itl5 Subscribe
Yoga 7-14itl5 Firmware Subscribe
Yoga 7-15itl5 Subscribe
Yoga 7-15itl5 Firmware Subscribe
Yoga 7 14ial7 Subscribe
Yoga 7 14ial7 Firmware Subscribe
Yoga 7 16iah7 Subscribe
Yoga 7 16iah7 Firmware Subscribe
Yoga 7 16iap7 Subscribe
Yoga 7 16iap7 Firmware Subscribe
Yoga 9 14iap7 Subscribe
Yoga 9 14iap7 Firmware Subscribe
Yoga Slim 7 Carbon 13iap7 Subscribe
Yoga Slim 7 Carbon 13iap7 Firmware Subscribe
Yoga Slim 7 Pro-14ihu5 Subscribe
Yoga Slim 7 Pro-14ihu5 Firmware Subscribe
Yoga Slim 7 Pro-14ihu5 O Subscribe
Yoga Slim 7 Pro-14ihu5 O Firmware Subscribe
Yoga Slim 7 Pro-14itl5 Subscribe
Yoga Slim 7 Pro-14itl5 Firmware Subscribe
Yoga Slim 7 Pro 14iah7 Subscribe
Yoga Slim 7 Pro 14iah7 Firmware Subscribe
Yoga Slim 7 Pro 14iap7 Subscribe
Yoga Slim 7 Pro 14iap7 Firmware Subscribe
Yoga Slim 7 Prox 14iah7 Subscribe
Yoga Slim 7 Prox 14iah7 Firmware Subscribe
Yoga Slim 9-14itl05 Subscribe
Yoga Slim 9-14itl05 Firmware Subscribe
Yoga Slim 9 14iap7 Subscribe
Yoga Slim 9 14iap7 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2022-43098 A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to execute arbitrary code due to improper buffer validation.
Fixes

Solution

Update system firmware to the version (or newer) indicated for your model in the Product Impact section in LEN-103710.


Workaround

No workaround given by the vendor.

History

Wed, 09 Oct 2024 20:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:o:lenovo:ideapad_1-14ijl7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_1-15ijl7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_1_14iau7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_1_14igl7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_1_15iau7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_1_15igl7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3-14igl05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3-14iil05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3-14iml05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3-14itl05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3-14itl6_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3-15igl05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3-15iil05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3-15iml05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3-15itl05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3-15itl6_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3-17iil05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3-17iml05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3-17itl6_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3_14iau7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3_15iau7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_3_17iau7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_5-15iil05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_5-15itl05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_5_15ial7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_creator_5-15imh05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:ideapad_gaming_3-15imh05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:l3-15iml05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:l3-15itl6_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5-15imh05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5-15imh05h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5-15imh6_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5-15ith6_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5-15ith6h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5-17imh05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5-17imh05h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5-17ith6_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5-17ith6h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5_15iah7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5_15iah7h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5_pro-16ith6_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5_pro-16ith6h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5_pro_16iah7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5_pro_16iah7h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5p-15imh05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_5p-15imh05h_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_7-16ithg6_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:legion_7_16iax7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:s14_g2_itl_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:s14_g3_iap_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:s540-13itl_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:slim_7_14iap7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:slim_7_carbon_13iap7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:slim_7_pro-14ihu5_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:slim_7_prox_14iah7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:slim_9-14itl05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:thinkbook_15p_g2_ith_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:thinkbook_15p_imh_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v14-igl_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v14_g1-iml_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v14_g2-itl_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v14_g2_ijl_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v14_g3_iap_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v15-igl_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v15_g1-iml_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v15_g2-itl_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v15_g2_ijl_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v15_g3_iap_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v17-iil_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v17_g2-itl_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:v17_g3_iap_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_7-14itl5_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_7-15itl5_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_7_14ial7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_7_16iah7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_7_16iap7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_9_14iap7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_slim_7_carbon_13iap7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_slim_7_pro-14ihu5_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_slim_7_pro-14ihu5_o_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_slim_7_pro-14itl5_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_slim_7_pro_14iah7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_slim_7_prox_14iah7_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_slim_9-14itl05_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:yoga_slim_9_14iap7_firmware:-:*:*:*:*:*:*:*
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2024-10-09T19:17:23.103Z

Reserved: 2022-10-28T14:47:08.485Z

Link: CVE-2022-3742

cve-icon Vulnrichment

Updated: 2024-08-03T01:20:57.697Z

cve-icon NVD

Status : Modified

Published: 2023-08-23T20:15:08.327

Modified: 2024-11-21T07:20:09.040

Link: CVE-2022-3742

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses