PT-2017-16074 · Lenovo · Lenovo Active Protection System

Published

2017-06-03

·

Updated

2019-10-03

·

CVE-2017-3740

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Lenovo Active Protection System versions prior to 1.82.0.14
Description The issue allows an attacker with local privileges to send commands to the system's embedded controller. This could result in a denial of service attack on the system or the ability to alter hardware functionality.
Recommendations For versions prior to 1.82.0.14, update to version 1.82.0.14 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2017-3740

Affected Products

Lenovo Active Protection System