Lucene search

K
cve[email protected]CVE-2019-10724
HistoryAug 29, 2019 - 12:15 a.m.

CVE-2019-10724

2019-08-2900:15:10
web.nvd.nist.gov
140
dolby dax2
vulnerability
api
security
nvd
threat
privilege escalation
system services
dolby
process termination

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:N/I:N/A:C

6.5 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

0.001 Low

EPSS

Percentile

35.2%

There is a vulnerability with the Dolby DAX2 API system services in which a low-privileged user can terminate arbitrary processes that are running at a higher privilege. The following are affected products and versions: Legion Y520T_Z370 6.0.1.8642, AIO310-20IAP 6.0.1.8642, AIO510-22ISH 6.0.1.8642, AIO510-23ISH 6.0.1.8642, AIO520-22IKL 6.0.1.8642, AIO520-22IKU 6.0.1.8642, AIO520-24IKL 6.0.1.8642, AIO520-24IKU 6.0.1.8642, AIO520-27IKL 6.0.1.8642, AIO720-24IKB 6.0.1.8642, IdeaCentre 520S-23IKU 6.0.1.8642, ThinkCentre M700z 6.0.1.8642, ThinkCentre M800z 6.0.1.8642, ThinkCentre M810z 6.0.1.8642, ThinkCentre M818z 6.0.1.8642, ThinkCentre M900Z 6.0.1.8642, ThinkCentre M910z 6.0.1.8642, V410z(YT S4250) 6.0.1.8642, 330-14IKBR Win10:6.0.1.8652, 330-15IKBR Win10:6.0.1.8652, 330-15IKBR (Brazil) Win10:6.0.1.8652, 330-15IKBR Touch Win10:6.0.1.8652, 330-17IKBR Win10:6.0.1.8652, YOGA 730-13IKB Win10:6.0.1.8644, YOGA 730-15IKB Win10:6.0.1.8644, ThinkPad L560 6.0.1.8644 and 6.0.1.8652, ThinkPad L570 6.0.1.8644 and 6.0.1.8652, ThinkPad P50 6.0.1.8642, ThinkPad P50s 6.0.1.8642, ThinkPad P51s (20Jx, 20Kx) 6.0.1.8642, ThinkPad P51s (20Hx) 6.0.1.8642, ThinkPad P52s 6.0.1.8642, ThinkPad P70 6.0.1.8642, ThinkPad T25 6.0.1.8642, ThinkPad T460s 6.0.1.8642, ThinkPad T470 6.0.1.8642, ThinkPad T470s 6.0.1.8642, ThinkPad T480 6.0.1.8642, ThinkPad T480s 6.0.1.8642, ThinkPad T560 6.0.1.8642, ThinkPad T570 6.0.1.8642, ThinkPad T580 6.0.1.8642, ThinkPad X1 Carbon 8.66.76.72 and 8.66.68.54, ThinkPad X1 Carbon 6th 6.0.1.8642, ThinkPad X1 Carbon, X1 Yoga 8.66.62.92 and 8.66.62.54, ThinkPad X1 Tablet (20Gx) 6.0.1.8642, ThinkPad X1 Tablet (20Jx) 6.0.1.8642, ThinkPad X1 Tablet Gen 3 6.0.1.8642, ThinkPad X1 Yoga (20Jx) 8.66.88.60, ThinkPad X1 Yoga 3rd 6.0.1.8642, ThinkPad X280 6.0.1.8642, ThinkPad Yoga 260, S1 8.66.62.92 and 8.66.62.54.

Affected configurations

NVD
Node
lenovolegion_y520t_z370_firmwareRange<6.0.1.8642
AND
lenovolegion_y520t_z370Match-
Node
lenovoaio310-20iap_firmwareRange<6.0.1.8642
AND
lenovoaio310-20iapMatch-
Node
lenovoaio510-22ish_firmwareRange<6.0.1.8642
AND
lenovoaio510-22ishMatch-
Node
lenovoaio510-23ish_firmwareRange<6.0.1.8642
AND
lenovoaio510-23ishMatch-
Node
lenovoaio520-22ikl_firmwareRange<6.0.1.8642
AND
lenovoaio520-22iklMatch-
Node
lenovoaio520-22iku_firmwareRange<6.0.1.8642
AND
lenovoaio520-22ikuMatch-
Node
lenovoaio520-24ikl_firmwareRange<6.0.1.8642
AND
lenovoaio520-24iklMatch-
Node
lenovoaio520-24iku_firmwareRange<6.0.1.8642
AND
lenovoaio520-24ikuMatch-
Node
lenovoaio520-27ikl_firmwareRange<6.0.1.8642
AND
lenovoaio520-27iklMatch-
Node
lenovoaio720-24ikb_firmwareRange<6.0.1.8642
AND
lenovoaio720-24ikbMatch-
Node
lenovoideacentre_520s-23iku_firmwareRange<6.0.1.8642
AND
lenovoideacentre_520s-23ikuMatch-
Node
lenovothinkcentre_m700z_firmwareRange<6.0.1.8642
AND
lenovothinkcentre_m700zMatch-
Node
lenovothinkcentre_m800z_firmwareRange<6.0.1.8642
AND
lenovothinkcentre_m800zMatch-
Node
lenovothinkcentre_m810z_firmwareRange<6.0.1.8642
AND
lenovothinkcentre_m810zMatch-
Node
lenovothinkcentre_m818z_firmwareRange<6.0.1.8642
AND
lenovothinkcentre_m818zMatch-
Node
lenovothinkcentre_m900z_firmwareRange<6.0.1.8642
AND
lenovothinkcentre_m900zMatch-
Node
lenovothinkcentre_m910z_firmwareRange<6.0.1.8642
AND
lenovothinkcentre_m910zMatch-
Node
lenovov410z\(yt_s4250\)_firmwareRange<6.0.1.8642
AND
lenovov410z\(yt_s4250\)Match-
Node
lenovo100e_2nd_gen_firmwareMatch-
AND
lenovo100e_2nd_genMatch-
Node
lenovo300e_2nd_gen_firmwareMatch-
AND
lenovo300e_2nd_genMatch-
Node
lenovo330-14ikbr_firmwareRange<6.0.1.8652
AND
lenovo330-14ikbrMatch-
Node
lenovo330-15ikbr_firmwareRange<6.0.1.8652
AND
lenovo330-15ikbrMatch-
Node
lenovo330-15ikbr_touch_firmwareRange<6.0.1.8652
AND
lenovo330-15ikbr_touchMatch-
Node
lenovo330-17ikbr_firmwareRange<6.0.1.8652
AND
lenovo330-17ikbrMatch-
Node
lenovo720s_touch-15ikb_firmwareMatch-
AND
lenovo720s_touch-15ikbMatch-
Node
lenovo720s-15ikb_firmwareMatch-
AND
lenovo720s-15ikbMatch-
Node
lenovob330-15ikbr_firmwareMatch-
AND
lenovob330-15ikbrMatch-
Node
lenovoe43-80_firmwareMatch-
AND
lenovoe43-80Match-
Node
lenovoe53-80_firmwareMatch-
AND
lenovoe53-80Match-
Node
lenovoflex_5-1470\(r\)_firmwareMatch-
AND
lenovoflex_5-1470\(r\)Match-
Node
lenovoflex_5-1570\(r\)_firmwareMatch-
AND
lenovoflex_5-1570\(r\)Match-
Node
lenovok42-80_firmwareMatch-
AND
lenovok42-80Match-
Node
lenovok43c-80_firmwareMatch-
AND
lenovok43c-80Match-
Node
lenovomiix_520-12ikb_firmwareMatch-
AND
lenovomiix_520-12ikbMatch-
Node
lenovomiix_525-12ikb_firmwareMatch-
AND
lenovomiix_525-12ikbMatch-
Node
lenovov330-14ikb_firmwareMatch-
AND
lenovov330-14ikbMatch-
Node
lenovov330-14isk_firmwareMatch-
AND
lenovov330-14iskMatch-
Node
lenovov330-15ikb_firmwareMatch-
AND
lenovov330-15ikbMatch-
Node
lenovov330-15isk_firmwareMatch-
AND
lenovov330-15iskMatch-
Node
lenovov720-14_firmwareMatch-
AND
lenovov720-14Match-
Node
lenovov730-15ikb_firmwareMatch-
AND
lenovov730-15ikbMatch-
Node
lenovoyoga_520-14ikbr_firmwareMatch-
AND
lenovoyoga_520-14ikbrMatch-
Node
lenovoyoga_720-12ikb_firmwareMatch-
AND
lenovoyoga_720-12ikbMatch-
Node
lenovoyoga_730-13ikb_firmwareRange<6.0.1.8644
AND
lenovoyoga_730-13ikbMatch-
Node
lenovoyoga_730-15ikb_firmwareRange<6.0.1.8644
AND
lenovoyoga_730-15ikbMatch-
Node
lenovoyoga_book_c930_firmwareMatch-
AND
lenovoyoga_book_c930Match-
Node
lenovoyoga_c930-13ikb_firmwareMatch-
AND
lenovoyoga_c930-13ikbMatch-
Node
lenovoyoga_c930-13ikb_glass_firmwareMatch-
AND
lenovoyoga_c930-13ikb_glassMatch-
Node
lenovothinkpad_11e_firmwareMatch-
AND
lenovothinkpad_11eMatch-
Node
lenovothinkpad_11e_yoga_firmwareMatch-
AND
lenovothinkpad_11e_yogaMatch-
Node
lenovothinkpad_13_firmwareMatch-
AND
lenovothinkpad_13Match-
Node
lenovothinkpad_a275_firmwareMatch-
AND
lenovothinkpad_a275Match-
Node
lenovothinkpad_a475_firmwareMatch-
AND
lenovothinkpad_a475Match-
Node
lenovothinkpad_e460_firmwareMatch-
AND
lenovothinkpad_e460Match-
Node
lenovothinkpad_e560_firmwareMatch-
AND
lenovothinkpad_e560Match-
Node
lenovothinkpad_e465_firmwareMatch-
AND
lenovothinkpad_e465Match-
Node
lenovothinkpad_e565_firmwareMatch-
AND
lenovothinkpad_e565Match-
Node
lenovothinkpad_e470_firmwareMatch-
AND
lenovothinkpad_e470Match-
Node
lenovothinkpad_e570_firmwareMatch-
AND
lenovothinkpad_e570Match-
Node
lenovothinkpad_e475_firmwareMatch-
AND
lenovothinkpad_e475Match-
Node
lenovothinkpad_e575_firmwareMatch-
AND
lenovothinkpad_e575Match-
Node
lenovothinkpad_e480_firmwareMatch-
AND
lenovothinkpad_e480Match-
Node
lenovothinkpad_e580_firmwareMatch-
AND
lenovothinkpad_e580Match-
Node
lenovothinkpad_e485_firmwareMatch-
AND
lenovothinkpad_e485Match-
Node
lenovothinkpad_e585_firmwareMatch-
AND
lenovothinkpad_e585Match-
Node
lenovothinkpad_e570_firmwareMatch-
AND
lenovothinkpad_e570Match-
Node
lenovothinkpad_s5_firmwareMatch-
AND
lenovothinkpad_s5Match-
Node
lenovothinkpad_l380_firmwareMatch-
AND
lenovothinkpad_l380Match-
Node
lenovothinkpad_l380_yoga_firmwareMatch-
AND
lenovothinkpad_l380_yogaMatch-
Node
lenovothinkpad_l460_firmwareMatch-
AND
lenovothinkpad_l460Match-
Node
lenovothinkpad_l470_firmwareMatch-
AND
lenovothinkpad_l470Match-
Node
lenovothinkpad_l480_firmwareMatch-
AND
lenovothinkpad_l480Match-
Node
lenovothinkpad_l580_firmwareMatch-
AND
lenovothinkpad_l580Match-
Node
lenovothinkpad_l560_firmwareRange<6.0.1.8644
AND
lenovothinkpad_l560Match-
Node
lenovothinkpad_l570_firmwareRange<6.0.1.8644
AND
lenovothinkpad_l570Match-
Node
lenovothinkpad_p40_firmwareMatch-
AND
lenovothinkpad_p40Match-
Node
lenovothinkpad_p50_firmwareRange<6.0.1.8642
AND
lenovothinkpad_p50Match-
Node
lenovothinkpad_p50s_firmwareRange<6.0.1.8642
AND
lenovothinkpad_p50sMatch-
Node
lenovothinkpad_p51s_firmwareRange<6.0.1.8642
AND
lenovothinkpad_p51sMatch-
Node
lenovothinkpad_p52s_firmwareRange<6.0.1.8642
AND
lenovothinkpad_p52sMatch-
Node
lenovothinkpad_p70_firmwareRange<6.0.1.8642
AND
lenovothinkpad_p70Match-
Node
lenovothinkpad_s3_yoga_14_firmwareMatch-
AND
lenovothinkpad_s3_yoga_14Match-
Node
lenovothinkpad_s3-s440_firmwareMatch-
AND
lenovothinkpad_s3-s440Match-
Node
lenovothinkpad_s5_firmwareMatch-
AND
lenovothinkpad_s5Match-
Node
lenovothinkpad_e560p_firmwareMatch-
AND
lenovothinkpad_e560pMatch-
Node
lenovothinkpad_t25_firmwareRange<6.0.1.8642
AND
lenovothinkpad_t25Match-
Node
lenovothinkpad_t460_firmwareMatch-
AND
lenovothinkpad_t460Match-
Node
lenovothinkpad_t460p_firmwareMatch-
AND
lenovothinkpad_t460pMatch-
Node
lenovothinkpad_t460s_firmwareRange<6.0.1.8642
AND
lenovothinkpad_t460sMatch-
Node
lenovothinkpad_t470_firmwareRange<6.0.1.8642
AND
lenovothinkpad_t470Match-
Node
lenovothinkpad_t470p_firmwareMatch-
AND
lenovothinkpad_t470pMatch-
Node
lenovothinkpad_t470s_firmwareRange<6.0.1.8642
AND
lenovothinkpad_t470sMatch-
Node
lenovothinkpad_t480_firmwareRange<6.0.1.8642
AND
lenovothinkpad_t480Match-
Node
lenovothinkpad_t480s_firmwareRange<6.0.1.8642
AND
lenovothinkpad_t480sMatch-
Node
lenovothinkpad_t560_firmwareRange<6.0.1.8642
AND
lenovothinkpad_t560Match-
Node
lenovothinkpad_t570_firmwareRange<6.0.1.8642
AND
lenovothinkpad_t570Match-
Node
lenovothinkpad_t580_firmwareRange<6.0.1.8642
AND
lenovothinkpad_t580Match-
Node
lenovothinkpad_x1_carbon_firmwareRange<8.66.76.72
AND
lenovothinkpad_x1_carbonMatch-
Node
lenovothinkpad_x1_yoga_firmwareRange<8.66.62.92
AND
lenovothinkpad_x1_yogaMatch-
Node
lenovothinkpad_x1_tablet_firmwareRange<6.0.1.8642
AND
lenovothinkpad_x1_tabletMatch-
Node
lenovothinkpad_x1_yoga_3rd_firmwareRange<6.0.1.8642
AND
lenovothinkpad_x1_yoga_3rdMatch-
Node
lenovothinkpad_x260_firmwareMatch-
AND
lenovothinkpad_x260Match-
Node
lenovothinkpad_x270_firmwareMatch-
AND
lenovothinkpad_x270Match-
Node
lenovothinkpad_x280_firmwareRange<6.0.1.8642
AND
lenovothinkpad_x280Match-
Node
lenovothinkpad_x380_yoga_firmwareMatch-
AND
lenovothinkpad_x380_yogaMatch-
Node
lenovothinkpad_yoga_260_firmwareRange<8.66.62.92
AND
lenovothinkpad_yoga_260Match-
Node
lenovothinkpad_yoga_s1_firmwareRange<8.66.62.92
AND
lenovothinkpad_yoga_s1Match-
Node
lenovothinkpad_yoga_370_firmwareMatch-
AND
lenovothinkpad_yoga_370Match-
Node
lenovothinkpad_s1_3rd_firmwareMatch-
AND
lenovothinkpad_s1_3rdMatch-
Node
lenovoyoga_14_firmwareMatch-
AND
lenovoyoga_14Match-

6.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:N/I:N/A:C

6.5 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

0.001 Low

EPSS

Percentile

35.2%

Related for CVE-2019-10724