CVE-2019-6156
10.04.2019, 17:29
In Lenovo systems, SMM BIOS Write Protection is used to prevent writes to SPI Flash. While this provides sufficient protection, an additional layer of protection is provided by SPI Protected Range Registers (PRx). Lenovo was notified that after resuming from S3 sleep mode in various versions of BIOS for Lenovo systems, the PRx is not set. This does not impact the SMM BIOS Write Protection, which keeps systems protected.Enginsight
Vendor | Product | Version |
---|---|---|
lenovo | 510-15ikl_firmware | - |
lenovo | 510s-08ikl_firmware | - |
lenovo | ideacentre_300-20ish_firmware | - |
lenovo | ideacentre_300s-11ish_firmware | - |
lenovo | ideacentre_510s-08ish_firmware | - |
lenovo | ideacentre_620s-03ikl_firmware | - |
lenovo | legion_y520t_z370_firmware | - |
lenovo | legion_y720_tower_firmware | - |
lenovo | legion_y920_tower_firmware | - |
lenovo | lenovo_63_firmware | - |
lenovo | h50-30g_desktop_firmware | - |
lenovo | m4500_firmware | - |
lenovo | m4500_id_firmware | - |
lenovo | m4550_id_firmware | - |
lenovo | 530s-07icb_firmware | - |
lenovo | qitian_4500_firmware | - |
lenovo | qitian_b4550_firmware | - |
lenovo | qitian_b4650_firmware | - |
lenovo | qitian_m4550_firmware | - |
lenovo | qitian_m4600_firmware | - |
lenovo | qitian_m4650_firmware | - |
lenovo | qt_m410_firmware | - |
lenovo | qt_b415_firmware | - |
lenovo | qt_m415_firmware | - |
lenovo | thinkcentre_e73_\(sff\)_firmware | - |
lenovo | thinkcentre_e73_\(twr\)_firmware | - |
lenovo | thinkcentre_e73s_firmware | - |
lenovo | thinkcentre_e74_firmware | - |
lenovo | thinkcentre_e74s_firmware | - |
lenovo | thinkcentre_e75t_firmware | - |
lenovo | thinkcentre_e75s_firmware | - |
lenovo | thinkcentre_m4500k_firmware | - |
lenovo | thinkcentre_m4500q_firmware | - |
lenovo | thinkcentre_m4500t_firmware | - |
lenovo | thinkcentre_m4500s_firmware | - |
lenovo | thinkcentre_m4600t_firmware | - |
lenovo | thinkcentre_m4600s_firmware | - |
lenovo | thinkcentre_m700t_firmware | - |
lenovo | thinkcentre_m700s_firmware | - |
lenovo | thinkcentre_m710e_firmware | - |
lenovo | thinkcentre_m710t_firmware | - |
lenovo | thinkcentre_m710s_firmware | - |
lenovo | thinkcentre_m73_\(sff\)_firmware | - |
lenovo | thinkcentre_m73_\(twr\)_firmware | - |
lenovo | thinkcentre_m73_tiny_firmware | - |
lenovo | thinkcentre_s510_firmware | - |
lenovo | v520s-08ikl_firmware | - |
lenovo | v520t-15ikl_firmware | - |
lenovo | yangtian_afh110_firmware | - |
lenovo | yangtian_afh81_firmware | - |
lenovo | yangtian_mc_h110_firmware | - |
lenovo | yangtian_mc_h110_pci_firmware | - |
lenovo | yangtian_mc_h81_firmware | - |
lenovo | yangtian_me\/we_h110_firmware | - |
lenovo | yangtian_mf\/wf_h110_pci_firmware | - |
lenovo | yangtian_mf\/wf_h81_pci_firmware | - |
lenovo | yangtian_ms\/ws_h81_firmware | - |
lenovo | yangtian_tc\/wc_h110_pci_firmware | - |
lenovo | yangtian_tc\/wcc_h81_pci_firmware | - |
lenovo | yangtian_ytm6900e-00_firmware | - |
lenovo | aio_y910-27ish_firmware | - |
lenovo | aio520-22ikl_firmware | - |
lenovo | aio520-22iku_firmware | - |
lenovo | aio520-24ikl_firmware | - |
lenovo | aio520-24iku_firmware | - |
lenovo | aio520-27ikl_firmware | - |
lenovo | qt_a7400_firmware | - |
lenovo | thinkcenter_m700z_firmware | - |
lenovo | thinkcenter_m800z_firmware | - |
lenovo | thinkcentre_e74z_firmware | - |
lenovo | thinkcentre_m700z_firmware | - |
lenovo | thinkcentre_m7300z_firmware | - |
lenovo | thinkcentre_m800z_firmware | - |
lenovo | thinkcentre_m810z_firmware | - |
lenovo | thinkcentre_m818z_firmware | - |
lenovo | thinkcentre_m820z_firmware | - |
lenovo | thinkcentre_m8300z_firmware | - |
lenovo | thinkcentre_m8350z_firmware | - |
lenovo | thinkcentre_m83z_\(aio\)_firmware | - |
lenovo | thinkcentre_m900z_firmware | - |
lenovo | thinkcentre_m910z_firmware | - |
lenovo | thinkcentre_m920z_firmware | - |
lenovo | thinkcentre_m9500z_firmware | - |
lenovo | thinkcentre_m9550z_firmware | - |
lenovo | thinkcentre_x1_aio_firmware | - |
lenovo | 330-14igm_firmware | 𝑥 < 7xcn30ww |
lenovo | 330-15igm_firmware | 𝑥 < 7xcn30ww |
lenovo | thinkpad_e480_firmware | 𝑥 < r0pet54w |
lenovo | thinkpad_e580_firmware | 𝑥 < r0pet54w |
lenovo | thinkpad_e570p_firmware | 𝑥 < r0met46w |
lenovo | thinkpad_s5_firmware | 𝑥 < r0met46w |
lenovo | thinkpad_l480_firmware | 𝑥 < r0qet54w |
lenovo | thinkpad_l580_firmware | 𝑥 < r0qet54w |
lenovo | thinkpad_s5_firmware | 𝑥 < r09et70w |
lenovo | thinkpad_e560p_firmware | 𝑥 < r09et70w |
lenovo | thinkpad_t460_firmware | 𝑥 < r06et66w |
lenovo | thinkpad_t460p_firmware | 𝑥 < r07et88w |
lenovo | thinkpad_x260_firmware | 𝑥 < r02et70w |
lenovo | thinkpad_x380_yoga_firmware | 𝑥 < r0set42w |
lenovo | thinkstation_c30_refresh_firmware | - |
lenovo | thinkstation_d30_refresh_firmware | - |
lenovo | thinkstation_p310_firmware | - |
lenovo | thinkstation_p410_firmware | - |
lenovo | thinkstation_p500_firmware | - |
lenovo | thinkstation_p510_firmware | - |
lenovo | thinkstation_p520_firmware | - |
lenovo | thinkstation_p520c_firmware | - |
lenovo | thinkstation_p700_firmware | - |
lenovo | thinkstation_p710_firmware | - |
lenovo | thinkstation_p720_firmware | - |
lenovo | thinkstation_p900_firmware | - |
lenovo | thinkstation_p910_firmware | - |
lenovo | thinkstation_p920_firmware | - |
lenovo | thinkstation_s30_refresh_firmware | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration