CVE-2020-8341
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
In Lenovo systems, SMM BIOS Write Protection is used to prevent writes to SPI Flash. While this provides sufficient protection, an additional layer of protection is provided by SPI Protected Range Registers (PRx). After resuming from S3 sleep mode in various versions of BIOS for some Lenovo ThinkPad systems, the PRx is not set. This does not impact the SMM BIOS Write Protection, which keeps systems protected.
En los sistemas Lenovo, SMM BIOS Write Protection es usada para impedir escrituras en la SPI Flash. Si bien esto proporciona suficiente protección, una capa adicional de protección es proporcionada por SPI Protected Range Registers (PRx). Después de reanudar desde el modo de suspensión S3 en varias versiones de BIOS para algunos sistemas Lenovo ThinkPad, el PRx no está configurado. Esto no afecta a SMM BIOS Write Protection, que mantiene los sistemas protegidos
CVSS Scores
SSVC
- Decision:-
Timeline
- 2020-01-28 CVE Reserved
- 2020-09-01 CVE Published
- 2023-05-18 EPSS Updated
- 2024-09-16 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://support.lenovo.com/us/en/product_security/LEN-30042 | 2020-09-11 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Lenovo Search vendor "Lenovo" | Thinkpad T490 \(20nx\) Firmware Search vendor "Lenovo" for product "Thinkpad T490 \(20nx\) Firmware" | < n2iet90w Search vendor "Lenovo" for product "Thinkpad T490 \(20nx\) Firmware" and version " < n2iet90w" | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Thinkpad T490 \(20nx\) Search vendor "Lenovo" for product "Thinkpad T490 \(20nx\)" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Thinkpad T490 \(20qx\) Firmware Search vendor "Lenovo" for product "Thinkpad T490 \(20qx\) Firmware" | < n2iet90w Search vendor "Lenovo" for product "Thinkpad T490 \(20qx\) Firmware" and version " < n2iet90w" | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Thinkpad T490 \(20qx\) Search vendor "Lenovo" for product "Thinkpad T490 \(20qx\)" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Thinkpad T490 \(20rx\) Firmware Search vendor "Lenovo" for product "Thinkpad T490 \(20rx\) Firmware" | < n2ret16w Search vendor "Lenovo" for product "Thinkpad T490 \(20rx\) Firmware" and version " < n2ret16w" | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Thinkpad T490 \(20rx\) Search vendor "Lenovo" for product "Thinkpad T490 \(20rx\)" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Thinkpad T490s \(20nx\) Firmware Search vendor "Lenovo" for product "Thinkpad T490s \(20nx\) Firmware" | < n2jet89w Search vendor "Lenovo" for product "Thinkpad T490s \(20nx\) Firmware" and version " < n2jet89w" | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Thinkpad T490s \(20nx\) Search vendor "Lenovo" for product "Thinkpad T490s \(20nx\)" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Thinkpad T495 Drift Firmware Search vendor "Lenovo" for product "Thinkpad T495 Drift Firmware" | < 2020-08-30 Search vendor "Lenovo" for product "Thinkpad T495 Drift Firmware" and version " < 2020-08-30" | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Thinkpad T495 Drift Search vendor "Lenovo" for product "Thinkpad T495 Drift" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Thinkpad T590 \(20nx\) Firmware Search vendor "Lenovo" for product "Thinkpad T590 \(20nx\) Firmware" | < n2iet90w Search vendor "Lenovo" for product "Thinkpad T590 \(20nx\) Firmware" and version " < n2iet90w" | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Thinkpad T590 \(20nx\) Search vendor "Lenovo" for product "Thinkpad T590 \(20nx\)" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Thinkpad X1 Carbon \(20qx\) Firmware Search vendor "Lenovo" for product "Thinkpad X1 Carbon \(20qx\) Firmware" | < n2het54w Search vendor "Lenovo" for product "Thinkpad X1 Carbon \(20qx\) Firmware" and version " < n2het54w" | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Thinkpad X1 Carbon \(20qx\) Search vendor "Lenovo" for product "Thinkpad X1 Carbon \(20qx\)" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Thinkpad X1 Yoga \(20qx\) Firmware Search vendor "Lenovo" for product "Thinkpad X1 Yoga \(20qx\) Firmware" | < n2het54w Search vendor "Lenovo" for product "Thinkpad X1 Yoga \(20qx\) Firmware" and version " < n2het54w" | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Thinkpad X1 Yoga \(20qx\) Search vendor "Lenovo" for product "Thinkpad X1 Yoga \(20qx\)" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Thinkpad X390 \(20qx\) Firmware Search vendor "Lenovo" for product "Thinkpad X390 \(20qx\) Firmware" | < n2jet89w Search vendor "Lenovo" for product "Thinkpad X390 \(20qx\) Firmware" and version " < n2jet89w" | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Thinkpad X390 \(20qx\) Search vendor "Lenovo" for product "Thinkpad X390 \(20qx\)" | - | - |
Safe
|
Lenovo Search vendor "Lenovo" | Thinkpad X390 \(20sx\) Firmware Search vendor "Lenovo" for product "Thinkpad X390 \(20sx\) Firmware" | < n2set18w Search vendor "Lenovo" for product "Thinkpad X390 \(20sx\) Firmware" and version " < n2set18w" | - |
Affected
| in | Lenovo Search vendor "Lenovo" | Thinkpad X390 \(20sx\) Search vendor "Lenovo" for product "Thinkpad X390 \(20sx\)" | - | - |
Safe
|