CVE-2016-5247

The BIOS for Lenovo ThinkCentre E93, M6500t/s, M6600, M6600q, M6600t/s, M73p, M800, M83, M8500t/s, M8600t/s, M900, M93, and M93P devices; ThinkServer RQ940, RS140, TS140, TS240, TS440, and TS540 devices; and ThinkStation E32, P300, and P310 devices might allow local users or physically proximate attackers to bypass the Secure Boot protection mechanism by leveraging an AMI test key.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:lenovo:bios:-:*:*:*:*:*:*:*
OR cpe:2.3:h:lenovo:thinkcentre_e93:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkcentre_m6500t\/s:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkcentre_m6600:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkcentre_m6600q:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkcentre_m6600t\/s:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkcentre_m73p:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkcentre_m800:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkcentre_m83:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkcentre_m8500t\/s:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkcentre_m8600t\/s:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkcentre_m900:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkcentre_m93:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkcentre_m93p:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkserver_rq940:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkserver_rs140:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkserver_ts140:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkserver_ts240:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkserver_ts440:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkserver_ts540:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkstation_e32:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkstation_p300:-:*:*:*:*:*:*:*
cpe:2.3:h:lenovo:thinkstation_p310:-:*:*:*:*:*:*:*

History

21 Nov 2024, 02:53

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/92661 - Third Party Advisory () http://www.securityfocus.com/bid/92661 - Third Party Advisory
References () https://support.lenovo.com/product_security/PS500067 - Mitigation, Vendor Advisory () https://support.lenovo.com/product_security/PS500067 - Mitigation, Vendor Advisory

Information

Published : 2016-09-22 15:59

Updated : 2024-11-21 02:53


NVD link : CVE-2016-5247

Mitre link : CVE-2016-5247

CVE.ORG link : CVE-2016-5247


JSON object : View

Products Affected

lenovo

  • thinkcentre_m6500t\/s
  • thinkserver_rs140
  • thinkstation_p300
  • thinkcentre_m93p
  • bios
  • thinkserver_rq940
  • thinkcentre_m6600
  • thinkcentre_m73p
  • thinkcentre_m8600t\/s
  • thinkserver_ts540
  • thinkcentre_m6600t\/s
  • thinkcentre_e93
  • thinkcentre_m6600q
  • thinkstation_p310
  • thinkcentre_m900
  • thinkcentre_m83
  • thinkcentre_m8500t\/s
  • thinkserver_ts140
  • thinkserver_ts240
  • thinkcentre_m800
  • thinkstation_e32
  • thinkserver_ts440
  • thinkcentre_m93
CWE
CWE-254

7PK - Security Features