CVE-2022-3431
published 2023-10-09CVE-2022-3431: A potential vulnerability in a driver used during manufacturing process on some consumer Lenovo Notebook devices that was mistakenly not deactivated may allow…
PriorityP340high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.21%
10.7th percentile
A potential vulnerability in a driver used during manufacturing process on some consumer Lenovo Notebook devices that was mistakenly not deactivated may allow an attacker with elevated privileges to modify secure boot setting by modifying an NVRAM variable.
Affected
26 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| lenovo | bios | — | — |
| lenovo | d330-10igl_firmware | < g0cn11ww | g0cn11ww |
| lenovo | ideapad_5_pro-16ach6_firmware | < gscn34ww | gscn34ww |
| lenovo | ideapad_5_pro-16ihu6_firmware | < grcn22ww | grcn22ww |
| lenovo | ideapad_5_pro_16arh7_firmware | < j4cn33ww | j4cn33ww |
| lenovo | ideapad_creator_5-16ach6_firmware | < gscn34ww | gscn34ww |
| lenovo | ideapad_duet_3_10igl5_firmware | < eqcn37ww | eqcn37ww |
| lenovo | ideapad_slim_7_pro_16ach6_firmware | < hucn16ww | hucn16ww |
| lenovo | s540-15iml_firmware | < cncn22ww | cncn22ww |
| lenovo | slim_7_16arh7_firmware | < klcn15ww | klcn15ww |
| lenovo | thinkbook_13x_itg_firmware | < hlcn30ww | hlcn30ww |
| lenovo | thinkbook_14_g4_+_ara_firmware | < j6cn40ww | j6cn40ww |
| lenovo | thinkbook_14_g4_+_iap_firmware | < hycn40ww | hycn40ww |
| lenovo | thinkbook_16_g4_+_ara_firmware | < j6cn40ww | j6cn40ww |
| lenovo | thinkbook_16_g4_+_iap_firmware | < hycn40ww | hycn40ww |
| lenovo | thinkbook_16p_nx_arh_firmware | < kjcn27ww | kjcn27ww |
| lenovo | thinkbook_plus_g2_itg_firmware | < gycn31ww | gycn31ww |
| lenovo | thinkbook_plus_g3_iap_firmware | < k6cn29ww | k6cn29ww |
| lenovo | yoga_duet_7-13iml05_firmware | < ercn30ww | ercn30ww |
| lenovo | yoga_duet_7-13itl6-lte_firmware | < gpcn24ww | gpcn24ww |
| lenovo | yoga_duet_7-13itl6_firmware | < gpcn24ww | gpcn24ww |
| lenovo | yoga_slim_7-13acn05_firmware | < ghcn28ww | ghcn28ww |
| lenovo | yoga_slim_7-13itl05_firmware | < f7cn39ww | f7cn39ww |
| lenovo | yoga_slim_7_carbon_13itl5_firmware | < f7cn39ww | f7cn39ww |
| lenovo | yoga_slim_7_pro_16ach6_firmware | < hucn16ww | hucn16ww |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
cisa8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jgmr-c4c9-rqmx: A potential vulnerability in a driver used during manufacturing process on some consumer Lenovo Notebook devices that was mistakenly not deactivated m
ghsa_unreviewed·2023-10-09
CVE-2022-3431 [HIGH] CWE-276 GHSA-jgmr-c4c9-rqmx: A potential vulnerability in a driver used during manufacturing process on some consumer Lenovo Notebook devices that was mistakenly not deactivated m
A potential vulnerability in a driver used during manufacturing process on some consumer Lenovo Notebook devices that was mistakenly not deactivated may allow an attacker with elevated privileges to modify secure boot setting by modifying an NVRAM variable.
CISA
Oracle VirtualBox Insufficient Input Validation Vulnerability
cisa·2022-03-03·CVSS 8.8
CVE-2008-3431 [HIGH] CWE-264 Oracle VirtualBox Insufficient Input Validation Vulnerability
Vulnerability: Oracle VirtualBox Insufficient Input Validation Vulnerability
Affected: Oracle VirtualBox
An input validation vulnerability exists in the VBoxDrv.sys driver of Sun xVM VirtualBox which allows attackers to locally execute arbitrary code.
Required Action: Apply updates per vendor instructions.
Notes: https://nvd.nist.gov/vuln/detail/CVE-2008-3431
Remediation Due Date: 2022-03-24
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-10-09
Published