{"api_version":"1","generated_at":"2026-07-23T04:28:34+00:00","cve":"CVE-2017-3748","urls":{"html":"https://cve.report/CVE-2017-3748","api":"https://cve.report/api/cve/CVE-2017-3748.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2017-3748","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2017-3748"},"summary":{"title":"CVE-2017-3748","description":"On Lenovo VIBE mobile phones, improper access controls on the nac_server component can be abused in conjunction with CVE-2017-3749 and CVE-2017-3750 to elevate privileges to the root user (commonly known as 'rooting' or \"jail breaking\" a device).","state":"PUBLISHED","assigner":"lenovo","published_at":"2017-06-29 15:29:00","updated_at":"2025-04-20 01:37:25"},"problem_types":["NVD-CWE-noinfo","Privilege escalation"],"metrics":[{"version":"3.0","source":"nvd@nist.gov","type":"Primary","score":"7.8","severity":"HIGH","vector":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","data":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"}},{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.2","severity":"","vector":"AV:L/AC:L/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://www.securityfocus.com/bid/99295","name":"http://www.securityfocus.com/bid/99295","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"Lenovo VIBE Mobile CVE-2017-3748 Local Privilege Escalation Vulnerability","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"https://support.lenovo.com/us/en/product_security/LEN-15823","name":"https://support.lenovo.com/us/en/product_security/LEN-15823","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mitigation","Vendor Advisory"],"title":"Local Root Exploit on Lenovo VIBE Mobile Phones","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2017-3748","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2017-3748","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"Lenovo Group Ltd.","product":"Lenovo Vibe and Lenovo China-only Moto Mobile Phones","version":"affected Earlier than 6.0","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2017","cve_id":"3748","vulnerable":"1","versionEndIncluding":"5.1.1","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"google","cpe5":"android","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a1600","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a2560","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a2800","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a2860","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a2880","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a3000","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a3500","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a3600-d","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a3600u","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a3800-d","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a3900","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a6000","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a6000-i","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a6020i37","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a6600","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_a6800","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_k30-e","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_k30-w-cu","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_k32c30","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"3748","vulnerable":"0","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"h","cpe4":"lenovo","cpe5":"vibe_k80m","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-05T14:39:39.676Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"99295","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/99295"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://support.lenovo.com/us/en/product_security/LEN-15823"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"Lenovo Vibe and Lenovo China-only Moto Mobile Phones","vendor":"Lenovo Group Ltd.","versions":[{"status":"affected","version":"Earlier than 6.0"}]}],"datePublic":"2017-06-22T00:00:00.000Z","descriptions":[{"lang":"en","value":"On Lenovo VIBE mobile phones, improper access controls on the nac_server component can be abused in conjunction with CVE-2017-3749 and CVE-2017-3750 to elevate privileges to the root user (commonly known as 'rooting' or \"jail breaking\" a device)."}],"problemTypes":[{"descriptions":[{"description":"Privilege escalation","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2017-06-30T09:57:01.000Z","orgId":"da227ddf-6e25-4b41-b023-0f976dcaca4b","shortName":"lenovo"},"references":[{"name":"99295","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/99295"},{"tags":["x_refsource_CONFIRM"],"url":"https://support.lenovo.com/us/en/product_security/LEN-15823"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"psirt@lenovo.com","DATE_PUBLIC":"2017-06-22T00:00:00","ID":"CVE-2017-3748","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"Lenovo Vibe and Lenovo China-only Moto Mobile Phones","version":{"version_data":[{"version_value":"Earlier than 6.0"}]}}]},"vendor_name":"Lenovo Group Ltd."}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"On Lenovo VIBE mobile phones, improper access controls on the nac_server component can be abused in conjunction with CVE-2017-3749 and CVE-2017-3750 to elevate privileges to the root user (commonly known as 'rooting' or \"jail breaking\" a device)."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"Privilege escalation"}]}]},"references":{"reference_data":[{"name":"99295","refsource":"BID","url":"http://www.securityfocus.com/bid/99295"},{"name":"https://support.lenovo.com/us/en/product_security/LEN-15823","refsource":"CONFIRM","url":"https://support.lenovo.com/us/en/product_security/LEN-15823"}]}}}},"cveMetadata":{"assignerOrgId":"da227ddf-6e25-4b41-b023-0f976dcaca4b","assignerShortName":"lenovo","cveId":"CVE-2017-3748","datePublished":"2017-06-29T15:00:00.000Z","dateReserved":"2016-12-16T00:00:00.000Z","dateUpdated":"2024-09-16T18:55:20.530Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2017-06-29 15:29:00","lastModifiedDate":"2025-04-20 01:37:25","problem_types":["NVD-CWE-noinfo","Privilege escalation"],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":7.8,"baseSeverity":"HIGH","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":1.8,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:C/I:C/A:C","baseScore":7.2,"accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":3.9,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:google:android:*:*:*:*:*:*:*:*","versionEndIncluding":"5.1.1","matchCriteriaId":"B349128A-CD08-4B2B-975B-650831183DBE"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a1600:-:*:*:*:*:*:*:*","matchCriteriaId":"FF657581-9D69-4310-AE50-BE48CA5D4CB9"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a2560:-:*:*:*:*:*:*:*","matchCriteriaId":"0CFB6B14-B5BB-48AB-92CB-CF7487512DC5"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a2800:-:*:*:*:*:*:*:*","matchCriteriaId":"325AC02E-E178-40D9-90D0-4E79843290B9"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a2860:-:*:*:*:*:*:*:*","matchCriteriaId":"339FC9D6-19B2-4B91-B899-00E5E277B303"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a2880:-:*:*:*:*:*:*:*","matchCriteriaId":"06D59E67-2F49-4B3F-9437-94C7140BCF31"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a3000:-:*:*:*:*:*:*:*","matchCriteriaId":"CBBAF531-27D5-44D6-9EEC-BA86172290E8"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a3500:-:*:*:*:*:*:*:*","matchCriteriaId":"0D7D1D8F-70CB-4B2F-BC7D-1B10E7EB2077"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a3600-d:-:*:*:*:*:*:*:*","matchCriteriaId":"6F2F72DE-F368-4A03-BFA4-56B9FA4938AF"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a3600u:-:*:*:*:*:*:*:*","matchCriteriaId":"6401481C-49A1-4886-80B8-E14569D77DA4"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a3800-d:-:*:*:*:*:*:*:*","matchCriteriaId":"31FDA3C7-BC99-45A5-AE81-46DA8FA579C7"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a3900:-:*:*:*:*:*:*:*","matchCriteriaId":"65E0F862-F45A-46CA-941A-99ED0FFF4272"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a6000:-:*:*:*:*:*:*:*","matchCriteriaId":"32979F5A-1DD6-42A9-9E10-E34CFFC96626"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a6000-i:-:*:*:*:*:*:*:*","matchCriteriaId":"898242F7-7C48-4439-8520-A0680EFD9FCD"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a6020i37:-:*:*:*:*:*:*:*","matchCriteriaId":"EC57159C-1E88-43AB-A56E-66CA3AD171EE"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a6600:-:*:*:*:*:*:*:*","matchCriteriaId":"83D6A8C1-E7E2-449F-8F6C-02993935E3CB"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_a6800:-:*:*:*:*:*:*:*","matchCriteriaId":"ADEF9C5D-A634-4E0D-AD7A-7F84BD7EF0CC"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_k30-e:-:*:*:*:*:*:*:*","matchCriteriaId":"72AFFC5D-B159-4A7A-A482-455260883DC2"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_k30-w-cu:-:*:*:*:*:*:*:*","matchCriteriaId":"B75A5EB3-6E3D-42D5-98E5-E0523342C11A"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_k32c30:-:*:*:*:*:*:*:*","matchCriteriaId":"6E8E4082-C625-4CC2-BD8E-3D8DD26FC5F3"},{"vulnerable":false,"criteria":"cpe:2.3:h:lenovo:vibe_k80m:-:*:*:*:*:*:*:*","matchCriteriaId":"AECF65FF-B344-446E-B303-BDB58FFC7290"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2017","CveId":"3748","Ordinal":"1","Title":"CVE-2017-3748","CVE":"CVE-2017-3748","Year":"2017"},"notes":[{"CveYear":"2017","CveId":"3748","Ordinal":"1","NoteData":"On Lenovo VIBE mobile phones, improper access controls on the nac_server component can be abused in conjunction with CVE-2017-3749 and CVE-2017-3750 to elevate privileges to the root user (commonly known as 'rooting' or \"jail breaking\" a device).","Type":"Description","Title":"CVE-2017-3748"},{"CveYear":"2017","CveId":"3748","Ordinal":"2","NoteData":"2017-06-29","Type":"Other","Title":"Published"},{"CveYear":"2017","CveId":"3748","Ordinal":"3","NoteData":"2017-06-30","Type":"Other","Title":"Modified"}]}}}