Vulnerabilities > CVE-2017-3741 - Unspecified vulnerability in Lenovo Power Management 1.67.12.19/1.67.12.23

047910
CVSS 3.3 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
NONE
Integrity impact
LOW
Availability impact
NONE
local
low complexity
lenovo

Summary

In the Lenovo Power Management driver before 1.67.12.24, a local user may alter the trackpoint's firmware and stop the trackpoint from functioning correctly. This issue only affects ThinkPad X1 Carbon 5th generation.

Vulnerable Configurations

Part Description Count
Application
Lenovo
2
Hardware
Lenovo
1