cbcvebase.
CVE-2022-1107
published 2022-04-22

CVE-2022-1107: During an internal product security audit a potential vulnerability due to use of Boot Services in the SmmOEMInt15 SMI handler was discovered in some ThinkPad…

medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
During an internal product security audit a potential vulnerability due to use of Boot Services in the SmmOEMInt15 SMI handler was discovered in some ThinkPad models could be exploited by an attacker with elevated privileges that could allow for execution of code.

Affected

31 ranges· showing 25
VendorProductVersion rangeFixed in
lenovothinkpad_11e_firmware< n15et78wn15et78w
lenovothinkpad_11e_yoga_firmware< n15et78wn15et78w
lenovothinkpad_bios
lenovothinkpad_helix_firmware< n17eta8wn17eta8w
lenovothinkpad_l560_firmware< n1het85wn1het85w
lenovothinkpad_l570_firmware< n1xet65wn1xet65w
lenovothinkpad_p50s_firmware< n1ket46wn1ket46w
lenovothinkpad_p51s_firmware< n1vet50wn1vet50w
lenovothinkpad_p52s_firmware< n27et36wn27et36w
lenovothinkpad_s540_firmware< gpet80wwgpet80ww
lenovothinkpad_t550_firmware< n11et50wn11et50w
lenovothinkpad_t560_firmware< n1ket46wn1ket46w
lenovothinkpad_t570_firmware< n1vet50wn1vet50w
lenovothinkpad_t580_firmware< n27et36wn27et36w
lenovothinkpad_w540_firmware< gnet92wwgnet92ww
lenovothinkpad_w541_firmware< gnet92wwgnet92ww
lenovothinkpad_w550s_firmware< n11et50wn11et50w
lenovothinkpad_x1_carbon_3rd_gen_firmware< n14et52wn14et52w
lenovothinkpad_x1_carbon_4th_gen_firmware< n1fet70wn1fet70w
lenovothinkpad_x1_carbon_5th_gen_kabylake_firmware< n1met55wn1met55w
lenovothinkpad_x1_carbon_5th_gen_skylake_firmware< n1met55wn1met55w
lenovothinkpad_x1_tablet_gen_1_firmware< n1let86wn1let86w
lenovothinkpad_x1_tablet_gen_2_firmware< n1oet50wn1oet50w
lenovothinkpad_x1_yoga_firmware< n1fet70wn1fet70w
lenovothinkpad_x1_yoga_gen_2_firmware< n1net47wn1net47w