CVE Vulnerabilities

CVE-2017-3740

Published: Jun 04, 2017 | Modified: Oct 03, 2019
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
4.9 MEDIUM
AV:L/AC:L/Au:N/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu

In Lenovo Active Protection System before 1.82.0.14, an attacker with local privileges could send commands to the systems embedded controller, which could cause a denial of service attack on the system or the ability to alter hardware functionality.

Affected Software

Name Vendor Start Version End Version
Active_protection_system Lenovo 1.00b (including) 1.00b (including)
Active_protection_system Lenovo 1.01b (including) 1.01b (including)
Active_protection_system Lenovo 1.20b (including) 1.20b (including)
Active_protection_system Lenovo 1.21 (including) 1.21 (including)
Active_protection_system Lenovo 1.22 (including) 1.22 (including)
Active_protection_system Lenovo 1.23 (including) 1.23 (including)
Active_protection_system Lenovo 1.30b (including) 1.30b (including)
Active_protection_system Lenovo 1.31 (including) 1.31 (including)
Active_protection_system Lenovo 1.32 (including) 1.32 (including)
Active_protection_system Lenovo 1.33b (including) 1.33b (including)
Active_protection_system Lenovo 1.34 (including) 1.34 (including)
Active_protection_system Lenovo 1.40 (including) 1.40 (including)
Active_protection_system Lenovo 1.41 (including) 1.41 (including)
Active_protection_system Lenovo 1.50 (including) 1.50 (including)
Active_protection_system Lenovo 1.51 (including) 1.51 (including)
Active_protection_system Lenovo 1.52 (including) 1.52 (including)
Active_protection_system Lenovo 1.53 (including) 1.53 (including)
Active_protection_system Lenovo 1.54 (including) 1.54 (including)
Active_protection_system Lenovo 1.61 (including) 1.61 (including)
Active_protection_system Lenovo 1.62 (including) 1.62 (including)
Active_protection_system Lenovo 1.63 (including) 1.63 (including)
Active_protection_system Lenovo 1.64 (including) 1.64 (including)
Active_protection_system Lenovo 1.70 (including) 1.70 (including)
Active_protection_system Lenovo 1.71 (including) 1.71 (including)
Active_protection_system Lenovo 1.72 (including) 1.72 (including)
Active_protection_system Lenovo 1.73 (including) 1.73 (including)
Active_protection_system Lenovo 1.74 (including) 1.74 (including)
Active_protection_system Lenovo 1.75 (including) 1.75 (including)
Active_protection_system Lenovo 1.76 (including) 1.76 (including)
Active_protection_system Lenovo 1.77.0.5 (including) 1.77.0.5 (including)
Active_protection_system Lenovo 1.77.0.7 (including) 1.77.0.7 (including)
Active_protection_system Lenovo 1.77.0.8 (including) 1.77.0.8 (including)
Active_protection_system Lenovo 1.77.0.9 (including) 1.77.0.9 (including)
Active_protection_system Lenovo 1.77.0.11 (including) 1.77.0.11 (including)
Active_protection_system Lenovo 1.77.0.20 (including) 1.77.0.20 (including)
Active_protection_system Lenovo 1.77.0.26 (including) 1.77.0.26 (including)
Active_protection_system Lenovo 1.78.0.09 (including) 1.78.0.09 (including)
Active_protection_system Lenovo 1.78.0.10 (including) 1.78.0.10 (including)
Active_protection_system Lenovo 1.78.0.11 (including) 1.78.0.11 (including)
Active_protection_system Lenovo 1.79.0.03 (including) 1.79.0.03 (including)
Active_protection_system Lenovo 1.80.1.00 (including) 1.80.1.00 (including)
Active_protection_system Lenovo 1.80.3.00 (including) 1.80.3.00 (including)
Active_protection_system Lenovo 1.80.8.00 (including) 1.80.8.00 (including)
Active_protection_system Lenovo 1.80.11.00 (including) 1.80.11.00 (including)
Active_protection_system Lenovo 1.81.0.08 (including) 1.81.0.08 (including)
Active_protection_system Lenovo 1.82.0.03 (including) 1.82.0.03 (including)
Active_protection_system Lenovo 1.82.0.06 (including) 1.82.0.06 (including)
Active_protection_system Lenovo 1.82.0.07 (including) 1.82.0.07 (including)
Active_protection_system Lenovo 1.82.0.10 (including) 1.82.0.10 (including)

References