Description
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to unlock UEFI variables due to a hard-coded SMI handler credential.
Published: 2023-08-23
Score: 6.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

Vendor Solution

Update system firmware to the version (or newer) indicated for your model in the Product Impact section in LEN-103710.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2022-43100 A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges to unlock UEFI variables due to a hard-coded SMI handler credential.
History

No history.

Subscriptions

Lenovo Ideapad 1-14ijl7 Ideapad 1-14ijl7 Firmware Ideapad 1-15ijl7 Ideapad 1-15ijl7 Firmware Ideapad 1 14iau7 Ideapad 1 14iau7 Firmware Ideapad 1 14igl7 Ideapad 1 14igl7 Firmware Ideapad 1 15iau7 Ideapad 1 15iau7 Firmware Ideapad 1 15igl7 Ideapad 1 15igl7 Firmware Ideapad 3-14igl05 Ideapad 3-14igl05 Firmware Ideapad 3-14iil05 Ideapad 3-14iil05 Firmware Ideapad 3-14iml05 Ideapad 3-14iml05 Firmware Ideapad 3-14itl05 Ideapad 3-14itl05 Firmware Ideapad 3-14itl6 Ideapad 3-14itl6 Firmware Ideapad 3-15igl05 Ideapad 3-15igl05 Firmware Ideapad 3-15iil05 Ideapad 3-15iil05 Firmware Ideapad 3-15iml05 Ideapad 3-15iml05 Firmware Ideapad 3-15itl05 Ideapad 3-15itl05 Firmware Ideapad 3-15itl6 Ideapad 3-15itl6 Firmware Ideapad 3-17iil05 Ideapad 3-17iil05 Firmware Ideapad 3-17iml05 Ideapad 3-17iml05 Firmware Ideapad 3-17itl6 Ideapad 3-17itl6 Firmware Ideapad 3 14iau7 Ideapad 3 14iau7 Firmware Ideapad 3 15iau7 Ideapad 3 15iau7 Firmware Ideapad 3 17iau7 Ideapad 3 17iau7 Firmware Ideapad 5-15iil05 Ideapad 5-15iil05 Firmware Ideapad 5-15itl05 Ideapad 5-15itl05 Firmware Ideapad 5 15ial7 Ideapad 5 15ial7 Firmware Ideapad Creator 5-15imh05 Ideapad Creator 5-15imh05 Firmware Ideapad Gaming 3-15imh05 Ideapad Gaming 3-15imh05 Firmware L3-15iml05 L3-15iml05 Firmware L3-15itl6 L3-15itl6 Firmware Legion 5-15imh05 Legion 5-15imh05 Firmware Legion 5-15imh05h Legion 5-15imh05h Firmware Legion 5-15imh6 Legion 5-15imh6 Firmware Legion 5-15ith6 Legion 5-15ith6 Firmware Legion 5-15ith6h Legion 5-15ith6h Firmware Legion 5-17imh05 Legion 5-17imh05 Firmware Legion 5-17imh05h Legion 5-17imh05h Firmware Legion 5-17ith6 Legion 5-17ith6 Firmware Legion 5-17ith6h Legion 5-17ith6h Firmware Legion 5 15iah7 Legion 5 15iah7 Firmware Legion 5 15iah7h Legion 5 15iah7h Firmware Legion 5 Pro-16ith6 Legion 5 Pro-16ith6 Firmware Legion 5 Pro-16ith6h Legion 5 Pro-16ith6h Firmware Legion 5 Pro 16iah7 Legion 5 Pro 16iah7 Firmware Legion 5 Pro 16iah7h Legion 5 Pro 16iah7h Firmware Legion 5p-15imh05 Legion 5p-15imh05 Firmware Legion 5p-15imh05h Legion 5p-15imh05h Firmware Legion 7-16ithg6 Legion 7-16ithg6 Firmware Legion 7 16iax7 Legion 7 16iax7 Firmware S14 G2 Itl S14 G2 Itl Firmware S14 G3 Iap S14 G3 Iap Firmware S540-13itl S540-13itl Firmware Slim 7 14iap7 Slim 7 14iap7 Firmware Slim 7 Carbon 13iap7 Slim 7 Carbon 13iap7 Firmware Slim 7 Pro-14ihu5 Slim 7 Pro-14ihu5 Firmware Slim 7 Prox 14iah7 Slim 7 Prox 14iah7 Firmware Slim 9-14itl05 Slim 9-14itl05 Firmware Slim 9 14iap7 Slim 9 14iap7 Firmware Thinkbook 15p G2 Ith Thinkbook 15p G2 Ith Firmware Thinkbook 15p Imh Thinkbook 15p Imh Firmware V14-igl V14-igl Firmware V14 G1-iml V14 G1-iml Firmware V14 G2-itl V14 G2-itl Firmware V14 G2 Ijl V14 G2 Ijl Firmware V14 G3 Iap V14 G3 Iap Firmware V15-igl V15-igl Firmware V15 G1-iml V15 G1-iml Firmware V15 G2-itl V15 G2-itl Firmware V15 G2 Ijl V15 G2 Ijl Firmware V15 G3 Iap V15 G3 Iap Firmware V17-iil V17-iil Firmware V17 G2-itl V17 G2-itl Firmware V17 G3 Iap V17 G3 Iap Firmware Yoga 7-14itl5 Yoga 7-14itl5 Firmware Yoga 7-15itl5 Yoga 7-15itl5 Firmware Yoga 7 14ial7 Yoga 7 14ial7 Firmware Yoga 7 16iah7 Yoga 7 16iah7 Firmware Yoga 7 16iap7 Yoga 7 16iap7 Firmware Yoga 9 14iap7 Yoga 9 14iap7 Firmware Yoga Slim 7 Carbon 13iap7 Yoga Slim 7 Carbon 13iap7 Firmware Yoga Slim 7 Pro-14ihu5 Yoga Slim 7 Pro-14ihu5 Firmware Yoga Slim 7 Pro-14ihu5 O Yoga Slim 7 Pro-14ihu5 O Firmware Yoga Slim 7 Pro-14itl5 Yoga Slim 7 Pro-14itl5 Firmware Yoga Slim 7 Pro 14iah7 Yoga Slim 7 Pro 14iah7 Firmware Yoga Slim 7 Pro 14iap7 Yoga Slim 7 Pro 14iap7 Firmware Yoga Slim 7 Prox 14iah7 Yoga Slim 7 Prox 14iah7 Firmware Yoga Slim 9-14itl05 Yoga Slim 9-14itl05 Firmware Yoga Slim 9 14iap7 Yoga Slim 9 14iap7 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2024-08-03T01:20:57.610Z

Reserved: 2022-10-28T14:48:18.783Z

Link: CVE-2022-3744

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-08-23T20:15:08.577

Modified: 2024-11-21T07:20:09.543

Link: CVE-2022-3744

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses