First published: Wed Aug 23 2023(Updated: )
A potential vulnerability was discovered in LCFC BIOS for some Lenovo consumer notebook models that could allow a local attacker with elevated privileges under certain conditions the ability to enumerate Embedded Controller (EC) commands.
Credit: psirt@lenovo.com
Affected Software | Affected Version | How to fix |
---|---|---|
Lenovo ideapad 1 14iau7 firmware | <jkcn34ww | |
Lenovo IdeaPad 1 14IAU7 | ||
Lenovo Ideapad 1 14IGL7 | <kkcn15ww | |
Lenovo Ideapad 1 14IGL7 | ||
Lenovo Ideapad 1 15IAU7 | <jkcn34ww | |
Lenovo Ideapad 1 15IAU7 Firmware | ||
Lenovo Ideapad 1 15IGL7 | <kkcn15ww | |
Lenovo Ideapad 1 15IGL7 Firmware | ||
Lenovo Ideapad 1-14ijl7 Firmware | <htcn31ww | |
Lenovo Ideapad 1-14ijl7 Firmware | ||
Lenovo IdeaPad 1 15IJL7 | <htcn31ww | |
Lenovo IdeaPad 1 15IJL7 | ||
Lenovo Ideapad 3 14IAU7 | <jkcn34ww | |
Lenovo Ideapad 3 | ||
Lenovo Ideapad 3 15IAU7 | <jkcn34ww | |
Lenovo Ideapad 3 15IAU7 | ||
Lenovo Ideapad 3 17IAU7 | <jkcn34ww | |
Lenovo Ideapad 3 17IAU7 Firmware | ||
Lenovo Ideapad 3-15IGL05 Firmware | <dvcn28ww | |
Lenovo ideapad 3-15igl05 firmware | ||
Lenovo Ideapad 3-17iil05 | <emcn56ww | |
Lenovo Ideapad 3-17IIL05 Firmware | ||
Lenovo Ideapad 3-17ITL6 | <ggcn51ww | |
Lenovo Ideapad 3-17itl6 Firmware | ||
Lenovo ideapad 5 15ial7 | <jbcn27ww | |
Lenovo Ideapad 5 15IAL7 | ||
Lenovo Ideapad 5-15itl05 | <fhcn70ww | |
Lenovo Ideapad 5-15itl05 Firmware | ||
Lenovo Flex 15IML Firmware | <ejcn30ww | |
Lenovo ideapad 3-15IML05 | ||
Lenovo L3-15ITL6 Firmware | <gfcn29ww | |
Lenovo Ideapad 3-15ITL6 | ||
Lenovo Legion 5 15IAH7H Firmware | <j2cn49ww | |
Lenovo Legion 5 15IAH7H Firmware | ||
Lenovo Legion 5 Firmware | <j2cn49ww | |
Lenovo Legion 5 | ||
Lenovo Legion 5 Pro 16IAH7H | <j2cn49ww | |
Lenovo Legion 5 Pro 16IAH7H | ||
Lenovo Legion 5 Pro 16IAH7H | <j2cn49ww | |
Lenovo Legion 5 Pro 16IAH7H Firmware | ||
Lenovo Legion 5 Pro 16ITH6H Firmware | <h1cn52ww | |
Lenovo Legion 5 Pro 16ITH6 | ||
Lenovo Legion 5 Pro 16ITH6H Firmware | <h1cn52ww | |
Lenovo Legion 5 Pro 16ITH6 | ||
Lenovo Legion 5 15IMH05 Firmware | <efcn58ww | |
Lenovo Legion 5 15IMH05 | ||
Lenovo Legion 5 Firmware | <efcn58ww | |
Lenovo Legion 5 15IMH05H | ||
Lenovo Legion 5 Firmware | <g8cn22ww | |
Lenovo Legion 5-15IMH6 Firmware | ||
Lenovo Legion 5 15ITH6 Firmware | <h1cn52ww | |
Lenovo Legion 5 15ITH6 Firmware | ||
Lenovo Legion 5 15ITH6H | <h1cn52ww | |
Lenovo Legion 5 15ITH6H | ||
Lenovo Legion 5-17IMH05H Firmware | <efcn58ww | |
Lenovo Legion 5 17IMH05H | ||
Lenovo Legion 5 Firmware | <efcn58ww | |
Lenovo Legion 5 17IMH05H | ||
Lenovo Legion 5-17ITH6H Firmware | <h1cn52ww | |
Lenovo Legion 5 | ||
Lenovo Legion 5 Firmware | <h1cn52ww | |
Lenovo Legion 5-17ITH6H Firmware | ||
Lenovo Legion 5P-15IMH05H | <efcn58ww | |
Lenovo Legion 5P-15IMH05H Firmware | ||
Lenovo Legion 5P-15IMH05 Firmware | <efcn58ww | |
Lenovo Legion 5P | ||
Lenovo Legion 7 16IAx7 | <k1cn40ww | |
Lenovo Legion 7 16IAx7 Firmware | ||
Lenovo Legion 7-16ITHG6 | <h1cn52ww | |
Lenovo Legion 7 16ITHG6 Firmware | ||
Lenovo S14 G2 ITL | <ggcn51ww | |
Lenovo S14 G2 ITL Firmware | ||
Lenovo S14 G3 IAP Firmware | <jkcn34ww | |
Lenovo s14 g3 iap firmware | ||
Lenovo Slim 7 14IAP7 | <jhcn28ww | |
Lenovo Slim 7 | ||
Lenovo Slim 7 Carbon 13IAP7 | <k2cn34ww | |
Lenovo Slim 7 Carbon 13IAP7 Firmware | ||
Lenovo Slim 7 Pro X 14IAH7 Firmware | <hmcn41ww | |
Lenovo Slim 7 Pro X 14IAH7 Firmware | ||
Lenovo Slim 9 14ITL05 Firmware | <j3cn49ww | |
Lenovo Slim 9 14IAP7 Firmware | ||
Lenovo ThinkBook 15p IMH Firmware | <f6cn26ww | |
Lenovo ThinkBook 15 IML | ||
Lenovo V14 G2 IJL | <htcn31ww | |
Lenovo V14 G2-ALC | ||
Lenovo V14 G3 IAP Firmware | <jkcn34ww | |
Lenovo v14 | ||
Lenovo v15 g2 ijl firmware | <htcn31ww | |
Lenovo v15 g2 ijl | ||
Lenovo v15 G3 IAP Firmware | <jkcn34ww | |
Lenovo v15 g3 iap firmware | ||
Lenovo v17 G3 IAP Firmware | <jkcn34ww | |
Lenovo V17 G3 IAP | ||
Lenovo S540-13ITL | <fzcn26ww | |
Lenovo S540-13ITL Firmware | ||
Lenovo Slim 7 Pro 14IHU5 Firmware | <fjcn74ww | |
Lenovo Slim 7 Pro 14IHU5 Firmware | ||
Lenovo Yoga Slim 9-14ITL05 Firmware | <escn56ww | |
Lenovo Yoga Slim 9-14ITL05 | ||
Lenovo Thinkbook 15p G2 ITH Firmware | <hjcn32ww | |
Lenovo Thinkbook 15p G2 ITH Firmware | ||
Lenovo v14 g1-iml | <dxcn44ww | |
Lenovo V14 | ||
Lenovo V14 G2 ITL | <ggcn51ww | |
Lenovo V14 G2 ITL | ||
Lenovo v14-igl firmware | <dvcn28ww | |
Lenovo v14-igl firmware | ||
Lenovo v15 G1-IML Firmware | <dxcn44ww | |
Lenovo v15 G1-IML Firmware | ||
Lenovo v15 g2-itl firmware | <ggcn51ww | |
Lenovo v15 g2-itl firmware | ||
Lenovo v15-igl firmware | <dvcn28ww | |
Lenovo v15-igl | ||
Lenovo V17 G2 ITL Firmware | <ggcn51ww | |
Lenovo V17 G2 ITL | ||
Lenovo v17-iil firmware | <emcn56ww | |
Lenovo v17-iil | ||
Lenovo Yoga 7 14IAL7 | <j1cn35ww | |
Lenovo Yoga 7 14IAL7 Firmware | ||
Lenovo Yoga 7 16IAH7 | <j1cn35ww | |
Lenovo Yoga 7 16IAH7 Firmware | ||
Lenovo Yoga 7 16IAP7 | <j1cn35ww | |
Lenovo Yoga 7 16IAP7 | ||
Lenovo Yoga 7-14ITL5 Firmware | <f5cn59ww | |
Lenovo Yoga 7 14ITL5 | ||
Lenovo Yoga 7 15ITL5 | <f5cn59ww | |
Lenovo Yoga 7 15ITL5 | ||
Lenovo Yoga 9 14IAP7 | <hncn42ww | |
Lenovo Yoga 9 14IAP7 Firmware | ||
Lenovo Slim 7 Carbon 13IAP7 Firmware | <k2cn34ww | |
Lenovo Slim 7 Carbon 13IAP7 | ||
Lenovo Yoga Slim 7 Pro 14IAP7 Firmware | <krcn14ww | |
Lenovo Yoga Slim 7 Pro 14IAH7 Firmware | ||
Lenovo Yoga Slim 7 Pro | <jhcn28ww | |
Lenovo Yoga Slim 7 Pro 14IAP7 Firmware | ||
Lenovo Yoga Slim 7 Pro 14IHU5 Firmware | <fjcn74ww | |
Lenovo Slim 7 Pro 14IHU5 Firmware | ||
Lenovo Yoga Slim 7 Pro 14IHU5 Firmware | <fjcn74ww | |
Lenovo Slim 7 Pro 14IHU5 Firmware | ||
Lenovo Yoga Slim 7 Pro 14ITL5 Firmware | <fjcn74ww | |
Lenovo Yoga Slim 7 Pro 14ITL5 | ||
Lenovo Slim 7 Pro X 14IAH7 Firmware | <hmcn41ww | |
Lenovo Slim 7 Pro X 14IAH7 Firmware | ||
Lenovo Yoga Slim 9 14IAP7 | <j3cn49ww | |
Lenovo Yoga Slim 9 14IAP7 Firmware | ||
Lenovo Yoga Slim 9 14IAP7 Firmware | <escn56ww | |
Lenovo Slim 9 14ITL05 Firmware | ||
Lenovo Ideapad 3-14IGL05 Firmware | <dvcn28ww | |
Lenovo ideapad 3-14igl05 firmware | ||
Lenovo Ideapad 3 14iil05 Firmware | <emcn56ww | |
Lenovo Ideapad 3 14iil05 Firmware | ||
Lenovo ideapad 3-14iml05 | <dxcn44ww | |
Lenovo Ideapad 3 | ||
Lenovo Ideapad 3-14itl6 firmware | <gccn32ww | |
Lenovo ideapad 3-14itl6 | ||
Lenovo Ideapad 3-14itl6 firmware | <ggcn51ww | |
Lenovo Ideapad 3-14itl6 firmware | ||
Lenovo Ideapad 3-15IIL05 Firmware | <emcn56ww | |
Lenovo Ideapad 3 15iil05 | ||
Lenovo L3 15IML05 Firmware | <dxcn44ww | |
Lenovo IdeaPad L3 15IML05 | ||
Lenovo ideapad 3-15itl05 | <gccn32ww | |
Lenovo ideapad 3-15IML05 | ||
Lenovo Ideapad 3-15ITL6 | <ggcn51ww | |
Lenovo L3-15ITL6 Firmware | ||
Lenovo ideapad 3 17IML05 firmware | <dxcn44ww | |
Lenovo Ideapad 3 17IML05 | ||
Lenovo Ideapad 5-15iil05 | <dpcn58ww | |
Lenovo Ideapad 5-15iil05 | ||
Lenovo Ideapad Creator 5-15imh05 Firmware | <egcn40ww | |
Lenovo Ideapad Creator 5-15imh05 Firmware | ||
Lenovo Ideapad Gaming 3-15IMH05 | <egcn40ww | |
Lenovo Ideapad Gaming 3-15IMH05 Firmware |
Update system firmware to the version (or newer) indicated for your model in the Product Impact section in LEN-103710.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-3743 is considered a medium severity vulnerability that allows local attackers with elevated privileges to enumerate Embedded Controller commands.
To fix CVE-2022-3743, it is recommended to update the firmware to the latest version provided by Lenovo for the affected notebook models.
CVE-2022-3743 affects various Lenovo consumer notebook models including IdeaPad, Legion, and Slim series with specific firmware versions.
No, CVE-2022-3743 requires local access to the affected device, making it not exploitable remotely.
The impact of CVE-2022-3743 could allow unauthorized access to system components, leading to potential compromise of system integrity.