Multiple Lenovo Products CVE-2017-5691 Local Privilege Escalation Vulnerability
BID:100493
Info
Multiple Lenovo Products CVE-2017-5691 Local Privilege Escalation Vulnerability
| Bugtraq ID: | 100493 |
| Class: | Configuration Error |
| CVE: |
CVE-2017-5691 |
| Remote: | No |
| Local: | Yes |
| Published: | Jul 27 2017 12:00AM |
| Updated: | Jul 27 2017 12:00AM |
| Credit: | The vendor reported the issue. |
| Vulnerable: |
Lenovo ThinkStation 0 Lenovo ThinkServer 0 Lenovo Thinkpad 0 Lenovo IdeaPad 0 Lenovo Desktop - All in One 0 Lenovo Desktop 0 Intel Xeon® E3-1500M v5 0 Intel Xeon® E3-1200 v6 0 Intel Xeon® E3-1200 v5 0 Intel Xeon® E3- 1500M v6 0 |
| Not Vulnerable: | |
Discussion
Multiple Lenovo Products CVE-2017-5691 Local Privilege Escalation Vulnerability
Multiple Lenovo Products are prone to a local privilege escalation vulnerability.
A local attacker can leverage this issue to gain elevated privileges.
Multiple Lenovo Products are prone to a local privilege escalation vulnerability.
A local attacker can leverage this issue to gain elevated privileges.
Exploit / POC
Multiple Lenovo Products CVE-2017-5691 Local Privilege Escalation Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
References
Multiple Lenovo Products CVE-2017-5691 Local Privilege Escalation Vulnerability
References:
References:
- Lenovo Homepage (lenovo)
- INTEL-SA-00076:SGX Update (Intel)
- LEN-15184:Intel SGX Update and Attestation Key Recovery (Lenovo)