A potential vulnerability in the LenovoFlashDeviceInterface SMI handler may allow an attacker with local access and elevated privileges to execute arbitrary code.

Project Subscriptions

Vendors Products
Thinkpad E14 Subscribe
Thinkpad E14 Firmware Subscribe
Thinkpad E14 Gen2 Subscribe
Thinkpad E14 Gen 2 Subscribe
Thinkpad E14 Gen 2 Firmware Subscribe
Thinkpad E14 Gen 4 Subscribe
Thinkpad E14 Gen 4 Firmware Subscribe
Thinkpad E15 Subscribe
Thinkpad E15 Firmware Subscribe
Thinkpad E15 Gen 2 Subscribe
Thinkpad E15 Gen 2 Firmware Subscribe
Thinkpad E15 Gen 4 Subscribe
Thinkpad E15 Gen 4 Firmware Subscribe
Thinkpad E490 Subscribe
Thinkpad E490 Firmware Subscribe
Thinkpad E490s Subscribe
Thinkpad E490s Firmware Subscribe
Thinkpad E590 Subscribe
Thinkpad E590 Firmware Subscribe
Thinkpad L13 Gen 3 Subscribe
Thinkpad L13 Gen 3 Firmware Subscribe
Thinkpad L13 Yoga Gen 3 Subscribe
Thinkpad L13 Yoga Gen 3 Firmware Subscribe
Thinkpad L14 Subscribe
Thinkpad L14 Firmware Subscribe
Thinkpad L15 Subscribe
Thinkpad L15 Firmware Subscribe
Thinkpad L15 Gen 2 Subscribe
Thinkpad L15 Gen 2 Firmware Subscribe
Thinkpad L15 Gen 3 Subscribe
Thinkpad L15 Gen 3 Firmware Subscribe
Thinkpad L490 Subscribe
Thinkpad L490 Firmware Subscribe
Thinkpad L590 Subscribe
Thinkpad L590 Firmware Subscribe
Thinkpad P14s Gen 1 Subscribe
Thinkpad P14s Gen 1 Firmware Subscribe
Thinkpad P14s Gen 2 Subscribe
Thinkpad P14s Gen 2 Firmware Subscribe
Thinkpad P14s Gen 3 Subscribe
Thinkpad P14s Gen 3 Firmware Subscribe
Thinkpad P15 Gen 1 Subscribe
Thinkpad P15 Gen 1 Firmware Subscribe
Thinkpad P15 Gen 2 Subscribe
Thinkpad P15 Gen 2 Firmware Subscribe
Thinkpad P15s Gen 1 Subscribe
Thinkpad P15s Gen 1 Firmware Subscribe
Thinkpad P15s Gen 2 Subscribe
Thinkpad P15s Gen 2 Firmware Subscribe
Thinkpad P15v Gen 1 Subscribe
Thinkpad P15v Gen 1 Firmware Subscribe
Thinkpad P15v Gen 2 Subscribe
Thinkpad P15v Gen 2 Firmware Subscribe
Thinkpad P15v Gen 3 Subscribe
Thinkpad P15v Gen 3 Firmware Subscribe
Thinkpad P16 Gen 1 Subscribe
Thinkpad P16 Gen 1 Firmware Subscribe
Thinkpad P16s Gen 1 Subscribe
Thinkpad P16s Gen 1 Firmware Subscribe
Thinkpad P17 Gen 1 Subscribe
Thinkpad P17 Gen 1 Firmware Subscribe
Thinkpad P17 Gen 2 Subscribe
Thinkpad P17 Gen 2 Firmware Subscribe
Thinkpad P1 Gen 2 Subscribe
Thinkpad P1 Gen 2 Firmware Subscribe
Thinkpad P1 Gen 3 Subscribe
Thinkpad P1 Gen 3 Firmware Subscribe
Thinkpad P1 Gen 4 Subscribe
Thinkpad P1 Gen 4 Firmware Subscribe
Thinkpad P1 Gen 5 Subscribe
Thinkpad P1 Gen 5 Firmware Subscribe
Thinkpad P43s Subscribe
Thinkpad P43s Firmware Subscribe
Thinkpad P53 Subscribe
Thinkpad P53 Firmware Subscribe
Thinkpad P53s Subscribe
Thinkpad P53s Firmware Subscribe
Thinkpad P73 Subscribe
Thinkpad P73 Firmware Subscribe
Thinkpad T14 Gen 1 Subscribe
Thinkpad T14 Gen 1 Firmware Subscribe
Thinkpad T14 Gen 2 Subscribe
Thinkpad T14 Gen 2 Firmware Subscribe
Thinkpad T14 Gen 3 Subscribe
Thinkpad T14 Gen 3 Firmware Subscribe
Thinkpad T14s Subscribe
Thinkpad T14s Firmware Subscribe
Thinkpad T14s Gen 2 Subscribe
Thinkpad T14s Gen 2 Firmware Subscribe
Thinkpad T14s Gen 3 Subscribe
Thinkpad T14s Gen 3 Firmware Subscribe
Thinkpad T15 Subscribe
Thinkpad T15 Firmware Subscribe
Thinkpad T15 Gen 2 Subscribe
Thinkpad T15 Gen 2 Firmware Subscribe
Thinkpad T15g Gen 1 Subscribe
Thinkpad T15g Gen 1 Firmware Subscribe
Thinkpad T15g Gen 2 Subscribe
Thinkpad T15g Gen 2 Firmware Subscribe
Thinkpad T15p Gen 1 Subscribe
Thinkpad T15p Gen 1 Firmware Subscribe
Thinkpad T15p Gen 2 Subscribe
Thinkpad T15p Gen 2 Firmware Subscribe
Thinkpad T15p Gen 3 Subscribe
Thinkpad T15p Gen 3 Firmware Subscribe
Thinkpad T16 Gen 1 Subscribe
Thinkpad T16 Gen 1 Firmware Subscribe
Thinkpad T490 Subscribe
Thinkpad T490 Firmware Subscribe
Thinkpad T490s Subscribe
Thinkpad T490s Firmware Subscribe
Thinkpad T590 Subscribe
Thinkpad T590 Firmware Subscribe
Thinkpad Thinkpad R14 Gen 2 Subscribe
Thinkpad Thinkpad R14 Gen 2 Firmware Subscribe
Thinkpad Thinkpad R14 Gen 4 Subscribe
Thinkpad Thinkpad R14 Gen 4 Firmware Subscribe
Thinkpad Thinkpad S3 2nd Gen Subscribe
Thinkpad Thinkpad S3 2nd Gen Firmware Subscribe
Thinkpad X12 Detachable Gen 1 Subscribe
Thinkpad X12 Detachable Gen 1 Firmware Subscribe
Thinkpad X13 Subscribe
Thinkpad X13 Firmware Subscribe
Thinkpad X13 Gen 2 Subscribe
Thinkpad X13 Gen 2 Firmware Subscribe
Thinkpad X13 Gen 3 Subscribe
Thinkpad X13 Gen 3 Firmware Subscribe
Thinkpad X13 Yoga Gen 1 Subscribe
Thinkpad X13 Yoga Gen 1 Firmware Subscribe
Thinkpad X13 Yoga Gen 2 Subscribe
Thinkpad X13 Yoga Gen 2 Firmware Subscribe
Thinkpad X13 Yoga Gen 3 Subscribe
Thinkpad X13 Yoga Gen 3 Firmware Subscribe
Thinkpad X1 Carbon 10th Gen Subscribe
Thinkpad X1 Carbon 10th Gen Firmware Subscribe
Thinkpad X1 Carbon 7th Gen Subscribe
Thinkpad X1 Carbon 7th Gen Firmware Subscribe
Thinkpad X1 Carbon 8th Gen Subscribe
Thinkpad X1 Carbon 8th Gen Firmware Subscribe
Thinkpad X1 Carbon 9th Gen Subscribe
Thinkpad X1 Carbon 9th Gen Firmware Subscribe
Thinkpad X1 Extreme 2nd Gen Subscribe
Thinkpad X1 Extreme 2nd Gen Firmware Subscribe
Thinkpad X1 Extreme 3rd Gen Subscribe
Thinkpad X1 Extreme 3rd Gen Firmware Subscribe
Thinkpad X1 Extreme 4th Gen Subscribe
Thinkpad X1 Extreme 4th Gen Firmware Subscribe
Thinkpad X1 Extreme Gen 5 Subscribe
Thinkpad X1 Extreme Gen 5 Firmware Subscribe
Thinkpad X1 Nano Gen 1 Subscribe
Thinkpad X1 Nano Gen 1 Firmware Subscribe
Thinkpad X1 Nano Gen 2 Subscribe
Thinkpad X1 Nano Gen 2 Firmware Subscribe
Thinkpad X1 Titanium Subscribe
Thinkpad X1 Titanium Firmware Subscribe
Thinkpad X1 Yoga 4th Gen Subscribe
Thinkpad X1 Yoga 4th Gen Firmware Subscribe
Thinkpad X1 Yoga 5th Gen Subscribe
Thinkpad X1 Yoga 5th Gen Firmware Subscribe
Thinkpad X1 Yoga 6th Gen Subscribe
Thinkpad X1 Yoga 6th Gen Firmware Subscribe
Thinkpad X1 Yoga 7th Gen Subscribe
Thinkpad X1 Yoga 7th Gen Firmware Subscribe
Thinkpad X390 Subscribe
Thinkpad X390 Firmware Subscribe
Thinkpad X390 Yoga Subscribe
Thinkpad X390 Yoga Firmware Subscribe
Thinkpad Z13 Gen 1 Subscribe
Thinkpad Z13 Gen 1 Firmware Subscribe
Thinkpad Z16 Gen 1 Subscribe
Thinkpad Z16 Gen 1 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2023-33796 A potential vulnerability in the LenovoFlashDeviceInterface SMI handler may allow an attacker with local access and elevated privileges to execute arbitrary code.
Fixes

Solution

Update system firmware to the version (or newer) indicated for your model in the Lenovo Product Security Advisory:  https://support.lenovo.com/us/en/product_security/LEN-106014


Workaround

No workaround given by the vendor.

History

Tue, 03 Dec 2024 19:15:00 +0000

Type Values Removed Values Added
First Time appeared Lenovo thinkpad E14 Gen2
CPEs cpe:2.3:h:lenovo:thinkpad_e14_gen2:-:*:*:*:*:*:*:*
Vendors & Products Lenovo thinkpad E14 Gen2
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 16 Sep 2024 15:45:00 +0000

Type Values Removed Values Added
Weaknesses CWE-119

Mon, 16 Sep 2024 15:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-787

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: lenovo

Published:

Updated: 2024-12-03T18:40:33.407Z

Reserved: 2023-04-25T19:41:49.164Z

Link: CVE-2023-2290

cve-icon Vulnrichment

Updated: 2024-08-02T06:19:14.606Z

cve-icon NVD

Status : Modified

Published: 2023-06-26T20:15:09.867

Modified: 2024-11-21T07:58:19.183

Link: CVE-2023-2290

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses