CVE-2021-4212

Summary

CVECVE-2021-4212
StatePUBLIC
Assigner[email protected]
Source PriorityCVE Program / NVD first with legacy fallback
Published2022-04-22 21:15:00 UTC
Updated2022-05-11 20:06:00 UTC
DescriptionA potential vulnerability in the SMI callback function used in the Legacy BIOS mode driver in some Lenovo Notebook models may allow an attacker with local access and elevated privileges to execute arbitrary code.

Risk And Classification

Problem Types: CWE-20

NVD Known Affected Configurations (CPE 2.3)

TypeVendorProductVersionUpdateEditionLanguage
Hardware Lenovo C340-14iml - All All All
Operating System Lenovo C340-14iml Firmware - All All All
Hardware Lenovo C340-15iml - All All All
Operating System Lenovo C340-15iml Firmware - All All All
Hardware Lenovo D330-10igm - All All All
Operating System Lenovo D330-10igm Firmware - All All All
Hardware Lenovo Duet 3-10igl5 - All All All
Operating System Lenovo Duet 3-10igl5 Firmware - All All All
Hardware Lenovo E41-50 - All All All
Operating System Lenovo E41-50 Firmware - All All All
Hardware Lenovo Flex-14iml - All All All
Operating System Lenovo Flex-14iml Firmware - All All All
Hardware Lenovo Flex-15iml - All All All
Operating System Lenovo Flex-15iml Firmware - All All All
Hardware Lenovo Ideapad 3-14are05 - All All All
Operating System Lenovo Ideapad 3-14are05 Firmware - All All All
Hardware Lenovo Ideapad 3-15are05 - All All All
Operating System Lenovo Ideapad 3-15are05 Firmware - All All All
Hardware Lenovo Ideapad 3-17are05 - All All All
Operating System Lenovo Ideapad 3-17are05 Firmware - All All All
Hardware Lenovo Ideapad 5-14alc05 - All All All
Operating System Lenovo Ideapad 5-14alc05 Firmware - All All All
Hardware Lenovo Ideapad 5-14are05 - All All All
Operating System Lenovo Ideapad 5-14are05 Firmware - All All All
Hardware Lenovo Ideapad 5-15itl05 - All All All
Operating System Lenovo Ideapad 5-15itl05 Firmware - All All All
Hardware Lenovo Ideapad 5 Pro-14acn6 - All All All
Operating System Lenovo Ideapad 5 Pro-14acn6 Firmware - All All All
Hardware Lenovo Ideapad 5 Pro-14itl6 - All All All
Operating System Lenovo Ideapad 5 Pro-14itl6 Firmware - All All All
Hardware Lenovo Ideapad 5 Pro-16ihu6 - All All All
Operating System Lenovo Ideapad 5 Pro-16ihu6 Firmware - All All All
Hardware Lenovo Ideapad Creator 5-15imh05 - All All All
Operating System Lenovo Ideapad Creator 5-15imh05 Firmware - All All All
Hardware Lenovo Ideapad Gaming 3-15ach6 - All All All
Operating System Lenovo Ideapad Gaming 3-15ach6 Firmware - All All All
Hardware Lenovo Ideapad Gaming 3-15arh05 - All All All
Operating System Lenovo Ideapad Gaming 3-15arh05 Firmware - All All All
Hardware Lenovo Ideapad Gaming 3-15imh05 - All All All
Operating System Lenovo Ideapad Gaming 3-15imh05 Firmware - All All All
Hardware Lenovo L340-15irh - All All All
Operating System Lenovo L340-15irh Firmware - All All All
Hardware Lenovo L340-15iwl - All All All
Operating System Lenovo L340-15iwl Firmware - All All All
Hardware Lenovo L340-15iwl Touch - All All All
Operating System Lenovo L340-15iwl Touch Firmware - All All All
Hardware Lenovo L340-17irh - All All All
Operating System Lenovo L340-17irh Firmware - All All All
Hardware Lenovo L340-17iwl - All All All
Operating System Lenovo L340-17iwl Firmware - All All All
Hardware Lenovo Legion Y540-15irh - All All All
Hardware Lenovo Legion Y540-15irh-pg0 - All All All
Operating System Lenovo Legion Y540-15irh-pg0 Firmware - All All All
Operating System Lenovo Legion Y540-15irh Firmware - All All All
Hardware Lenovo Legion Y540-17irh - All All All
Hardware Lenovo Legion Y540-17irh-pg0 - All All All
Operating System Lenovo Legion Y540-17irh-pg0 Firmware - All All All
Operating System Lenovo Legion Y540-17irh Firmware - All All All
Hardware Lenovo Legion Y545 - All All All
Hardware Lenovo Legion Y545-pg0 - All All All
Operating System Lenovo Legion Y545-pg0 Firmware - All All All
Operating System Lenovo Legion Y545 Firmware - All All All
Hardware Lenovo Legion Y7000-2019 - All All All
Hardware Lenovo Legion Y7000-2019-pg0 - All All All
Operating System Lenovo Legion Y7000-2019-pg0 Firmware - All All All
Operating System Lenovo Legion Y7000-2019 Firmware - All All All
Hardware Lenovo S340-13iml - All All All
Operating System Lenovo S340-13iml Firmware - All All All
Hardware Lenovo S340-14api - All All All
Operating System Lenovo S340-14api Firmware - All All All
Hardware Lenovo S340-14iml - All All All
Operating System Lenovo S340-14iml Firmware - All All All
Hardware Lenovo S340-15api - All All All
Operating System Lenovo S340-15api Firmware - All All All
Hardware Lenovo S340-15api Touch - All All All
Operating System Lenovo S340-15api Touch Firmware - All All All
Hardware Lenovo S340-15iml - All All All
Operating System Lenovo S340-15iml Firmware - All All All
Hardware Lenovo S540-14iml - All All All
Operating System Lenovo S540-14iml Firmware - All All All
Hardware Lenovo S540-14iml Touch - All All All
Operating System Lenovo S540-14iml Touch Firmware - All All All
Hardware Lenovo S540-15iml - All All All
Operating System Lenovo S540-15iml Firmware - All All All
Hardware Lenovo Slim 7-14are05 - All All All
Operating System Lenovo Slim 7-14are05 Firmware - All All All
Hardware Lenovo Slim 7-14itl05 - All All All
Operating System Lenovo Slim 7-14itl05 Firmware - All All All
Hardware Lenovo Slim 7-15iil05 - All All All
Operating System Lenovo Slim 7-15iil05 Firmware - All All All
Hardware Lenovo Slim 7-15imh05 - All All All
Operating System Lenovo Slim 7-15imh05 Firmware - All All All
Hardware Lenovo Slim 7-15itl05 - All All All
Operating System Lenovo Slim 7-15itl05 Firmware - All All All
Hardware Lenovo Thinkbook 13x Itg - All All All
Operating System Lenovo Thinkbook 13x Itg Firmware - All All All
Hardware Lenovo Thinkbook 14 G3 Itl - All All All
Operating System Lenovo Thinkbook 14 G3 Itl Firmware - All All All
Hardware Lenovo Thinkbook Plus G2 Itg - All All All
Operating System Lenovo Thinkbook Plus G2 Itg Firmware - All All All
Hardware Lenovo V14-are - All All All
Operating System Lenovo V14-are Firmware - All All All
Hardware Lenovo V140-15iwl - All All All
Operating System Lenovo V140-15iwl Firmware - All All All
Hardware Lenovo V340-17iwl - All All All
Operating System Lenovo V340-17iwl Firmware - All All All
Hardware Lenovo Yoga 6-13alc6 - All All All
Operating System Lenovo Yoga 6-13alc6 Firmware - All All All
Hardware Lenovo Yoga Creator 7-15imh05 - All All All
Operating System Lenovo Yoga Creator 7-15imh05 Firmware - All All All
Hardware Lenovo Yoga Slim 7-14are05 - All All All
Operating System Lenovo Yoga Slim 7-14are05 Firmware - All All All
Hardware Lenovo Yoga Slim 7-14iil05 - All All All
Operating System Lenovo Yoga Slim 7-14iil05 Firmware - All All All
Hardware Lenovo Yoga Slim 7-14itl05 - All All All
Operating System Lenovo Yoga Slim 7-14itl05 Firmware - All All All
Hardware Lenovo Yoga Slim 7-15iil05 - All All All
Operating System Lenovo Yoga Slim 7-15iil05 Firmware - All All All
Hardware Lenovo Yoga Slim 7-15imh05 - All All All
Operating System Lenovo Yoga Slim 7-15imh05 Firmware - All All All
Hardware Lenovo Yoga Slim 7-15itl05 - All All All
Operating System Lenovo Yoga Slim 7-15itl05 Firmware - All All All
Hardware Lenovo Yoga Slim 7 Carbon 13itl5 - All All All
Operating System Lenovo Yoga Slim 7 Carbon 13itl5 Firmware - All All All

References

ReferenceSourceLinkTags
Multi-vendor BIOS Security Vulnerabilities (February 2022) - Lenovo Support US MISC support.lenovo.com
CVE Program record CVE.ORG www.cve.org canonical
NVD vulnerability detail NVD nvd.nist.gov canonical, analysis

Vendor Comments And Credit

Discovery Credit

LEGACY: Lenovo thanks Jiawei Yin(@yngweijw) and Menghao Li of IIE varas

© CVE.report 2026 |

Use of this information constitutes acceptance for use in an AS IS condition. There are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. It is the responsibility of user to evaluate the accuracy, completeness or usefulness of any information, opinion, advice or other content. EACH USER WILL BE SOLELY RESPONSIBLE FOR ANY consequences of his or her direct or indirect use of this web site. ALL WARRANTIES OF ANY KIND ARE EXPRESSLY DISCLAIMED. This site will NOT BE LIABLE FOR ANY DIRECT, INDIRECT or any other kind of loss.

CVE, CWE, and OVAL are registred trademarks of The MITRE Corporation and the authoritative source of CVE content is MITRE's CVE web site. This site includes MITRE data granted under the following license.

CVE.report and Source URL Uptime Status status.cve.report