CVE-2024-3100

EUVD-2024-31703
A potential buffer overflow vulnerability was reported in some Lenovo Notebook products that could allow a local attacker with elevated privileges to execute arbitrary code.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.7 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 28%
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
lenovoideapad_1-11igl05_firmware
𝑥
< dwcn31ww
ADP
lenovoflex_5-14itl05_firmware
𝑥
< fxcn47ww
ADP
lenovo100w_gen_3_firmware
𝑥
< gacn48ww
ADP
lenovoyoga_slim_7_pro-14ach5_o_firmware
𝑥
< gzcn36ww
ADP
lenovo14w_gen_2_firmware
𝑥
< h0cn29ww
ADP
lenovoideapad_5-15alc05_firmware
𝑥
< h2cn35ww
ADP
lenovothinkbook_13s_g4_iap_firmware
𝑥
< hwcn52ww
ADP
lenovothinkbook_13x_g2_iap_firmware
𝑥
< hxcn57ww
ADP
lenovothinkbook_13s_g4_arb_firmware
𝑥
< hzcx55ww
ADP
lenovoideapad_flex_5_16iau7_firmware
𝑥
< j7cn48ww
ADP
lenovo13w_yoga_firmware
𝑥
< jacn41ww
ADP
lenovoideapad_flex_5_14alc7_firmware
𝑥
< jccn40ww
ADP
lenovoideapad_1_15alc7_firmware
𝑥
< jtcn54ww
ADP
lenovo13w_yoga_gen_2_firmware
𝑥
< kbcn29ww
ADP
lenovoideapad_slim_3_15amn8_firmware
𝑥
< l1cn41ww
ADP
lenovo500w_yoga_gen_4_firmware
𝑥
< l2cn34ww
ADP
lenovo500w_yoga_gen_4_firmware
𝑥
< l3cn34ww
ADP
lenovoideapad_flex_5_16iru8_firmware
𝑥
< l6cn24ww
ADP
lenovoideapad_flex_5_16abr8_firmware
𝑥
< l7cn21ww
ADP
lenovok14_g2_iru_firmware
𝑥
< mmcn36ww
ADP
lenovothinkbook_16_g6_abp_firmware
𝑥
< mncn27ww
ADP
lenovov15_g4_abp_firmware
𝑥
< mscn16ww
ADP
lenovoideapad_3-17alc6_firmware
𝑥
< glcn63ww
ADP
lenovoideapad_slim_3_16abr8_firmware
𝑥
< kycn32ww
ADP
lenovoideapad_slim_5_light_14abr8_firmware
𝑥
< l9cn26ww
ADP