CVE-2017-3751
Summary
| CVE | CVE-2017-3751 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2017-08-10 00:29:00 UTC |
| Updated | 2017-08-24 19:17:00 UTC |
| Description | An unquoted service path vulnerability was identified in the driver for the ThinkPad Compact USB Keyboard with TrackPoint versions earlier than 1.5.5.0. This could allow an attacker with local privileges to execute code with administrative privileges. |
Risk And Classification
Problem Types: CWE-428
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Lenovo | Thinkpad Compact Usb Keyboard Driver | - | All | All | All |
| Application | Lenovo | Thinkpad Compact Usb Keyboard Driver | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| ThinkPad Compact USB Keyboard with TrackPoint Driver Unquoted Service Path - US | CONFIRM | support.lenovo.com | Patch, Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.