CVE-2017-3771: High severity Lenovo Thinkcentre M710s Firmware vulnerability
System boot process is not adequately secured In Lenovo E95 and ThinkCentre M710s/M710t because systems were shipped from factory without completing BIOS/UEFI initialization process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-3771?
CVE-2017-3771 has been classified as a medium severity vulnerability due to its impact on system security during the boot process.
How do I fix CVE-2017-3771?
To remediate CVE-2017-3771, ensure that your Lenovo E95 or ThinkCentre M710s/M710t systems complete the BIOS/UEFI initialization process.
Which devices are affected by CVE-2017-3771?
CVE-2017-3771 affects the Lenovo E95, ThinkCentre M710s, and ThinkCentre M710t systems shipped without completed BIOS/UEFI setup.
What is the potential risk associated with CVE-2017-3771?
The potential risk of CVE-2017-3771 includes unauthorized access or control over systems during the boot phase.
Has a patch been released for CVE-2017-3771?
As of now, no specific patch has been publicly available for CVE-2017-3771, but following the initialization process will help mitigate the issue.