Vulnerability Description
Realtek Audio Drivers for Windows, as used on the Lenovo ThinkPad X1 Carbon 20A7, 20A8, 20BS, and 20BT before 6.0.8882.1 and 20KH and 20KG before 6.0.8907.1 (and on many other Lenovo and non-Lenovo products), mishandles DLL preloading.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Lenovo | Ideacentre 510-15Ikl Firmware | < 6.0.8923.1 |
| Lenovo | Ideacentre 510-15Ikl | - |
| Lenovo | Ideacentre 510S-08Ikl Firmware | < 6.0.8923.1 |
| Lenovo | Ideacentre 510S-08Ikl | - |
| Lenovo | Ideacentre 300S-11Ish Firmware | < 6.0.8924.1 |
| Lenovo | Ideacentre 300S-11Ish | - |
| Lenovo | Ideacentre 310-15Asr Firmware | < 6.0.8924.1 |
| Lenovo | Ideacentre 310-15Asr | - |
| Lenovo | Ideacentre 310-15Iap Firmware | < 6.0.8924.1 |
| Lenovo | Ideacentre 310-15Iap | - |
| Lenovo | Ideacentre 310A-15Iap Firmware | < 6.0.8924.1 |
| Lenovo | Ideacentre 310A-15Iap | - |
| Lenovo | Ideacentre 310S-08Iap Firmware | < 6.0.8924.1 |
| Lenovo | Ideacentre 310S-08Iap | - |
| Lenovo | Ideacentre 510-15Abr Firmware | < 6.0.8924.1 |
| Lenovo | Ideacentre 510-15Abr | - |
| Lenovo | Ideacentre 510S-08Ish Firmware | < 6.0.8924.1 |
| Lenovo | Ideacentre 510S-08Ish | - |
| Lenovo | Ideacentre 610S-02Ish Firmware | < 6.0.8924.1 |
| Lenovo | Ideacentre 610S-02Ish | - |
Related Weaknesses (CWE)
References
- https://support.lenovo.com/us/en/product_security/ps500315-realtek-audio-driver-Vendor Advisory
- https://support.lenovo.com/us/en/product_security/ps500315-realtek-audio-driver-Vendor Advisory
FAQ
What is CVE-2019-19705?
CVE-2019-19705 is a vulnerability with a CVSS score of 7.8 (HIGH). Realtek Audio Drivers for Windows, as used on the Lenovo ThinkPad X1 Carbon 20A7, 20A8, 20BS, and 20BT before 6.0.8882.1 and 20KH and 20KG before 6.0.8907.1 (and on many other Lenovo and non-Lenovo pr...
How severe is CVE-2019-19705?
CVE-2019-19705 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-19705?
Check the references section above for vendor advisories and patch information. Affected products include: Lenovo Ideacentre 510-15Ikl Firmware, Lenovo Ideacentre 510-15Ikl, Lenovo Ideacentre 510S-08Ikl Firmware, Lenovo Ideacentre 510S-08Ikl, Lenovo Ideacentre 300S-11Ish Firmware.