Vulnerability Name:

CVE-2017-3754 (CCN-128488)

Assigned:2016-12-16
Published:2017-07-13
Updated:2019-10-03
Summary:Some Lenovo brand notebook systems do not have write protections properly configured in the system BIOS. This could enable an attacker with physical or administrative access to a system to be able to flash the BIOS with an arbitrary image and potentially run malicious BIOS code.
CVSS v3 Severity:6.7 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H)
5.8 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): High
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
6.8 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
5.9 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Physical
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
7.2 High (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-noinfo
Vulnerability Consequences:Bypass Security
References:Source: MITRE
Type: CNA
CVE-2017-3754

Source: XF
Type: UNKNOWN
lenovo-cve20173754-sec-bypass(128488)

Source: CCN
Type: Lenovo Security Advisory: LEN-15084
Attacker with physical or administrative access could flash malicious BIOS code

Source: CONFIRM
Type: Vendor Advisory
https://support.lenovo.com/us/en/product_security/LEN-15084

Vulnerable Configuration:Configuration 1:
  • cpe:/o:lenovo:bios:-:*:*:*:*:*:*:*
  • AND
  • cpe:/h:lenovo:710s-13ikb/xiaoxin_air_13ikb:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:710s-13isk/xiaoxin_air_13:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:k21-80:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:k22-80/lenovo_v720-12:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:k41-80:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:lenovo_ideapad_110-14ast:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:lenovo_ideapad_110-15ast:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:lenovo_ideapad_320-14ast:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:lenovo_ideapad_320-15ast:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:lenovo_xiaoxin_rui7000:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:miix_710-12ikb:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:miix_720-12ikb:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:notebook_320-17ast:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:rescuer_e520-15ikb:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:v110-14iap:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:v110-15iap:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:v110-15ikb:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:v110-15isk:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:yoga_710-11ikb:-:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/h:lenovo:710s-13ikb/xiaoxin_air_13ikb:-:*:*:*:*:*:*:*
  • OR cpe:/h:lenovo:710s-13isk/xiaoxin_air_13:-:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    lenovo bios -
    lenovo 710s-13ikb/xiaoxin air 13ikb -
    lenovo 710s-13isk/xiaoxin air 13 -
    lenovo k21-80 -
    lenovo k22-80/lenovo v720-12 -
    lenovo k41-80 -
    lenovo lenovo ideapad 110-14ast -
    lenovo lenovo ideapad 110-15ast -
    lenovo lenovo ideapad 320-14ast -
    lenovo lenovo ideapad 320-15ast -
    lenovo lenovo xiaoxin rui7000 -
    lenovo miix 710-12ikb -
    lenovo miix 720-12ikb -
    lenovo notebook 320-17ast -
    lenovo rescuer e520-15ikb -
    lenovo v110-14iap -
    lenovo v110-15iap -
    lenovo v110-15ikb -
    lenovo v110-15isk -
    lenovo yoga 710-11ikb -
    lenovo 710s-13ikb/xiaoxin air 13ikb -
    lenovo 710s-13isk/xiaoxin air 13 -