First published: Wed Aug 28 2019(Updated: )
There is a vulnerability with the Dolby DAX2 API system services in which a low-privileged user can terminate arbitrary processes that are running at a higher privilege. The following are affected products and versions: Legion Y520T_Z370 6.0.1.8642, AIO310-20IAP 6.0.1.8642, AIO510-22ISH 6.0.1.8642, AIO510-23ISH 6.0.1.8642, AIO520-22IKL 6.0.1.8642, AIO520-22IKU 6.0.1.8642, AIO520-24IKL 6.0.1.8642, AIO520-24IKU 6.0.1.8642, AIO520-27IKL 6.0.1.8642, AIO720-24IKB 6.0.1.8642, IdeaCentre 520S-23IKU 6.0.1.8642, ThinkCentre M700z 6.0.1.8642, ThinkCentre M800z 6.0.1.8642, ThinkCentre M810z 6.0.1.8642, ThinkCentre M818z 6.0.1.8642, ThinkCentre M900Z 6.0.1.8642, ThinkCentre M910z 6.0.1.8642, V410z(YT S4250) 6.0.1.8642, 330-14IKBR Win10:6.0.1.8652, 330-15IKBR Win10:6.0.1.8652, 330-15IKBR (Brazil) Win10:6.0.1.8652, 330-15IKBR Touch Win10:6.0.1.8652, 330-17IKBR Win10:6.0.1.8652, YOGA 730-13IKB Win10:6.0.1.8644, YOGA 730-15IKB Win10:6.0.1.8644, ThinkPad L560 6.0.1.8644 and 6.0.1.8652, ThinkPad L570 6.0.1.8644 and 6.0.1.8652, ThinkPad P50 6.0.1.8642, ThinkPad P50s 6.0.1.8642, ThinkPad P51s (20Jx, 20Kx) 6.0.1.8642, ThinkPad P51s (20Hx) 6.0.1.8642, ThinkPad P52s 6.0.1.8642, ThinkPad P70 6.0.1.8642, ThinkPad T25 6.0.1.8642, ThinkPad T460s 6.0.1.8642, ThinkPad T470 6.0.1.8642, ThinkPad T470s 6.0.1.8642, ThinkPad T480 6.0.1.8642, ThinkPad T480s 6.0.1.8642, ThinkPad T560 6.0.1.8642, ThinkPad T570 6.0.1.8642, ThinkPad T580 6.0.1.8642, ThinkPad X1 Carbon 8.66.76.72 and 8.66.68.54, ThinkPad X1 Carbon 6th 6.0.1.8642, ThinkPad X1 Carbon, X1 Yoga 8.66.62.92 and 8.66.62.54, ThinkPad X1 Tablet (20Gx) 6.0.1.8642, ThinkPad X1 Tablet (20Jx) 6.0.1.8642, ThinkPad X1 Tablet Gen 3 6.0.1.8642, ThinkPad X1 Yoga (20Jx) 8.66.88.60, ThinkPad X1 Yoga 3rd 6.0.1.8642, ThinkPad X280 6.0.1.8642, ThinkPad Yoga 260, S1 8.66.62.92 and 8.66.62.54.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Lenovo Legion Y520t Z370 Firmware | <6.0.1.8642 | |
Lenovo Legion Y520t Z370 | ||
Lenovo Aio310-20iap Firmware | <6.0.1.8642 | |
Lenovo Aio310-20iap | ||
Lenovo Aio510-22ish Firmware | <6.0.1.8642 | |
Lenovo Aio510-22ish | ||
Lenovo Aio510-23ish Firmware | <6.0.1.8642 | |
Lenovo Aio510-23ish | ||
Lenovo Aio520-22ikl Firmware | <6.0.1.8642 | |
Lenovo Aio520-22ikl | ||
Lenovo Aio520-22iku Firmware | <6.0.1.8642 | |
Lenovo Aio520-22iku | ||
Lenovo Aio520-24ikl Firmware | <6.0.1.8642 | |
Lenovo Aio520-24ikl | ||
Lenovo Aio520-24iku Firmware | <6.0.1.8642 | |
Lenovo Aio520-24iku | ||
Lenovo Aio520-27ikl Firmware | <6.0.1.8642 | |
Lenovo Aio520-27ikl | ||
Lenovo Aio720-24ikb Firmware | <6.0.1.8642 | |
Lenovo Aio720-24ikb | ||
Lenovo Ideacentre 520s-23iku Firmware | <6.0.1.8642 | |
Lenovo Ideacentre 520s-23iku | ||
Lenovo Thinkcentre M700z Firmware | <6.0.1.8642 | |
Lenovo Thinkcentre M700z | ||
Lenovo Thinkcentre M800z Firmware | <6.0.1.8642 | |
Lenovo Thinkcentre M800z | ||
Lenovo Thinkcentre M810z Firmware | <6.0.1.8642 | |
Lenovo Thinkcentre M810z | ||
Lenovo Thinkcentre M818z Firmware | <6.0.1.8642 | |
Lenovo Thinkcentre M818z | ||
Lenovo Thinkcentre M900z Firmware | <6.0.1.8642 | |
Lenovo Thinkcentre M900z | ||
Lenovo Thinkcentre M910z Firmware | <6.0.1.8642 | |
Lenovo Thinkcentre M910z | ||
Lenovo V410z\(yt S4250\) Firmware | <6.0.1.8642 | |
Lenovo V410z\(yt S4250\) | ||
Lenovo 100e 2nd Gen Firmware | ||
Lenovo 100e 2nd Gen | ||
Lenovo 300e 2nd Gen Firmware | ||
Lenovo 300e 2nd Gen | ||
Lenovo 330-14ikbr Firmware | <6.0.1.8652 | |
Lenovo 330-14ikbr | ||
Lenovo 330-15ikbr Firmware | <6.0.1.8652 | |
Lenovo 330-15ikbr | ||
Lenovo 330-15ikbr Touch Firmware | <6.0.1.8652 | |
Lenovo 330-15ikbr Touch | ||
Lenovo 330-17ikbr Firmware | <6.0.1.8652 | |
Lenovo 330-17ikbr | ||
Lenovo 720s Touch-15ikb Firmware | ||
Lenovo 720s Touch-15ikb | ||
Lenovo 720s-15ikb Firmware | ||
Lenovo 720s-15ikb | ||
Lenovo B330-15ikbr Firmware | ||
Lenovo B330-15ikbr | ||
Lenovo E43-80 Firmware | ||
Lenovo E43-80 | ||
Lenovo E53-80 Firmware | ||
Lenovo E53-80 | ||
Lenovo Flex 5-1470\(r\) Firmware | ||
Lenovo Flex 5-1470\(r\) | ||
Lenovo Flex 5-1570\(r\) Firmware | ||
Lenovo Flex 5-1570\(r\) | ||
Lenovo K42-80 Firmware | ||
Lenovo K42-80 | ||
Lenovo K43c-80 Firmware | ||
Lenovo K43c-80 | ||
Lenovo Miix 520-12ikb Firmware | ||
Lenovo Miix 520-12ikb | ||
Lenovo Miix 525-12ikb Firmware | ||
Lenovo Miix 525-12ikb | ||
Lenovo V330-14ikb Firmware | ||
Lenovo V330-14ikb | ||
Lenovo V330-14isk Firmware | ||
Lenovo V330-14isk | ||
Lenovo V330-15ikb Firmware | ||
Lenovo V330-15ikb | ||
Lenovo V330-15isk Firmware | ||
Lenovo V330-15isk | ||
Lenovo V720-14 Firmware | ||
Lenovo V720-14 | ||
Lenovo V730-15ikb Firmware | ||
Lenovo V730-15ikb | ||
Lenovo Yoga 520-14ikbr Firmware | ||
Lenovo Yoga 520-14ikbr | ||
Lenovo Yoga 720-12ikb Firmware | ||
Lenovo Yoga 720-12ikb | ||
Lenovo Yoga 730-13ikb Firmware | <6.0.1.8644 | |
Lenovo Yoga 730-13ikb | ||
Lenovo Yoga 730-15ikb Firmware | <6.0.1.8644 | |
Lenovo Yoga 730-15ikb | ||
Lenovo Yoga Book C930 Firmware | ||
Lenovo Yoga Book C930 | ||
Lenovo Yoga C930-13ikb Firmware | ||
Lenovo Yoga C930-13ikb | ||
Lenovo Yoga C930-13ikb Glass Firmware | ||
Lenovo Yoga C930-13ikb Glass | ||
Lenovo Thinkpad 11e Firmware | ||
Lenovo Thinkpad 11e | ||
Lenovo Thinkpad 11e Yoga Firmware | ||
Lenovo Thinkpad 11e Yoga | ||
Lenovo Thinkpad 13 Firmware | ||
Lenovo Thinkpad 13 | ||
Lenovo Thinkpad A275 Firmware | ||
Lenovo Thinkpad A275 | ||
Lenovo Thinkpad A475 Firmware | ||
Lenovo Thinkpad A475 | ||
Lenovo Thinkpad E460 Firmware | ||
Lenovo Thinkpad E460 | ||
Lenovo Thinkpad E560 Firmware | ||
Lenovo Thinkpad E560 | ||
Lenovo Thinkpad E465 Firmware | ||
Lenovo Thinkpad E465 | ||
Lenovo Thinkpad E565 Firmware | ||
Lenovo Thinkpad E565 | ||
Lenovo Thinkpad E470 Firmware | ||
Lenovo Thinkpad E470 | ||
Lenovo Thinkpad E570 Firmware | ||
Lenovo Thinkpad E570 | ||
Lenovo Thinkpad E475 Firmware | ||
Lenovo Thinkpad E475 | ||
Lenovo Thinkpad E575 Firmware | ||
Lenovo Thinkpad E575 | ||
Lenovo Thinkpad E480 Firmware | ||
Lenovo Thinkpad E480 | ||
Lenovo Thinkpad E580 Firmware | ||
Lenovo Thinkpad E580 | ||
Lenovo Thinkpad E485 Firmware | ||
Lenovo Thinkpad E485 | ||
Lenovo Thinkpad E585 Firmware | ||
Lenovo Thinkpad E585 | ||
Lenovo Thinkpad S5 Firmware | ||
Lenovo Thinkpad S5 | ||
Lenovo Thinkpad L380 Firmware | ||
Lenovo Thinkpad L380 | ||
Lenovo Thinkpad L380 Yoga Firmware | ||
Lenovo Thinkpad L380 Yoga | ||
Lenovo Thinkpad L460 Firmware | ||
Lenovo Thinkpad L460 | ||
Lenovo Thinkpad L470 Firmware | ||
Lenovo Thinkpad L470 | ||
Lenovo Thinkpad L480 Firmware | ||
Lenovo Thinkpad L480 | ||
Lenovo Thinkpad L580 Firmware | ||
Lenovo Thinkpad L580 | ||
Lenovo Thinkpad L560 Firmware | <6.0.1.8644 | |
Lenovo Thinkpad L560 | ||
Lenovo Thinkpad L570 Firmware | <6.0.1.8644 | |
Lenovo Thinkpad L570 | ||
Lenovo Thinkpad P40 Firmware | ||
Lenovo Thinkpad P40 | ||
Lenovo Thinkpad P50 Firmware | <6.0.1.8642 | |
Lenovo Thinkpad P50 | ||
Lenovo Thinkpad P50s Firmware | <6.0.1.8642 | |
Lenovo Thinkpad P50s | ||
Lenovo Thinkpad P51s Firmware | <6.0.1.8642 | |
Lenovo Thinkpad P51s | ||
Lenovo Thinkpad P52s Firmware | <6.0.1.8642 | |
Lenovo Thinkpad P52s | ||
Lenovo Thinkpad P70 Firmware | <6.0.1.8642 | |
Lenovo Thinkpad P70 | ||
Lenovo Thinkpad S3 Yoga 14 Firmware | ||
Lenovo Thinkpad S3 Yoga 14 | ||
Lenovo Thinkpad S3-s440 Firmware | ||
Lenovo Thinkpad S3-s440 | ||
Lenovo Thinkpad E560p Firmware | ||
Lenovo Thinkpad E560p | ||
Lenovo Thinkpad T25 Firmware | <6.0.1.8642 | |
Lenovo Thinkpad T25 | ||
Lenovo Thinkpad T460 Firmware | ||
Lenovo ThinkPad T460 | ||
Lenovo Thinkpad T460p Firmware | ||
Lenovo ThinkPad T460p | ||
Lenovo Thinkpad T460s Firmware | <6.0.1.8642 | |
Lenovo Thinkpad T460s | ||
Lenovo Thinkpad T470 Firmware | <6.0.1.8642 | |
Lenovo Thinkpad T470 | ||
Lenovo Thinkpad T470p Firmware | ||
Lenovo Thinkpad T470p | ||
Lenovo Thinkpad T470s Firmware | <6.0.1.8642 | |
Lenovo Thinkpad T470s | ||
Lenovo Thinkpad T480 Firmware | <6.0.1.8642 | |
Lenovo Thinkpad T480 | ||
Lenovo Thinkpad T480s Firmware | <6.0.1.8642 | |
Lenovo Thinkpad T480s | ||
Lenovo Thinkpad T560 Firmware | <6.0.1.8642 | |
Lenovo Thinkpad T560 | ||
Lenovo Thinkpad T570 Firmware | <6.0.1.8642 | |
Lenovo Thinkpad T570 | ||
Lenovo Thinkpad T580 Firmware | <6.0.1.8642 | |
Lenovo Thinkpad T580 | ||
Lenovo Thinkpad X1 Carbon Firmware | <8.66.76.72 | |
Lenovo ThinkPad X1 Carbon | ||
Lenovo Thinkpad X1 Yoga Firmware | <8.66.62.92 | |
Lenovo Thinkpad X1 Yoga | ||
Lenovo Thinkpad X1 Tablet Firmware | <6.0.1.8642 | |
Lenovo Thinkpad X1 Tablet | ||
Lenovo Thinkpad X1 Yoga 3rd Firmware | <6.0.1.8642 | |
Lenovo Thinkpad X1 Yoga 3rd | ||
Lenovo Thinkpad X260 Firmware | ||
Lenovo Thinkpad X260 | ||
Lenovo Thinkpad X270 Firmware | ||
Lenovo Thinkpad X270 | ||
Lenovo Thinkpad X280 Firmware | <6.0.1.8642 | |
Lenovo Thinkpad X280 | ||
Lenovo Thinkpad X380 Yoga Firmware | ||
Lenovo Thinkpad X380 Yoga | ||
Lenovo Thinkpad Yoga 260 Firmware | <8.66.62.92 | |
Lenovo Thinkpad Yoga 260 | ||
Lenovo Thinkpad Yoga S1 Firmware | <8.66.62.92 | |
Lenovo Thinkpad Yoga S1 | ||
Lenovo Thinkpad Yoga 370 Firmware | ||
Lenovo Thinkpad Yoga 370 | ||
Lenovo Thinkpad S1 3rd Firmware | ||
Lenovo Thinkpad S1 3rd | ||
Lenovo Yoga 14 Firmware | ||
Lenovo Yoga 14 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability allows a low-privileged user to terminate arbitrary processes running at a higher privilege.
Multiple Lenovo products including Legion Y520T_Z370, AIO310-20IAP, AIO510-22ISH, and more are affected.
The severity level of CVE-2019-10724 is rated as medium with a CVSS score of 6.5.
You can find more information about CVE-2019-10724 on the Lenovo product security page or the Lenovo support solutions page.