Vulnerability Description
A buffer overflow exists in the Remote Presence subsystem which can potentially allow valid, authenticated users to cause a recoverable subsystem denial of service.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Lenovo | Thinkagile Vx3331 Firmware | < 1.80_afbt20n |
| Lenovo | Thinkagile Vx3331 | - |
| Lenovo | Thinkagile Hx Enclosure Certified Node Firmware | < 5.20_tei3c8m |
| Lenovo | Thinkagile Hx Enclosure Certified Node | - |
| Lenovo | Thinkagile Hx1021 Firmware | < 3.60_tei386m |
| Lenovo | Thinkagile Hx1021 | - |
| Lenovo | Thinkagile Hx1320 Firmware | < 8.40-cdi394n |
| Lenovo | Thinkagile Hx1320 | - |
| Lenovo | Thinkagile Hx1321 Firmware | < 8.40-cdi394n |
| Lenovo | Thinkagile Hx1321 | - |
| Lenovo | Thinkagile Hx1520-R Firmware | < 8.40-cdi394n |
| Lenovo | Thinkagile Hx1520-R | - |
| Lenovo | Thinkagile Hx1521-R Firmware | < 8.40-cdi394n |
| Lenovo | Thinkagile Hx1521-R | - |
| Lenovo | Thinkagile Hx2320-E Firmware | < 8.40-cdi394n |
| Lenovo | Thinkagile Hx2320-E | - |
| Lenovo | Thinkagile Hx2321 Firmware | < 8.40-cdi394n |
| Lenovo | Thinkagile Hx2321 | - |
| Lenovo | Thinkagile Hx2720-E Firmware | < 5.20_tei3c8m |
| Lenovo | Thinkagile Hx2720-E | - |
Related Weaknesses (CWE)
References
- https://support.lenovo.com/us/en/product_security/LEN-87734Vendor Advisory
- https://support.lenovo.com/us/en/product_security/LEN-87734Vendor Advisory
FAQ
What is CVE-2022-34884?
CVE-2022-34884 is a vulnerability with a CVSS score of 7.2 (HIGH). A buffer overflow exists in the Remote Presence subsystem which can potentially allow valid, authenticated users to cause a recoverable subsystem denial of service.
How severe is CVE-2022-34884?
CVE-2022-34884 has been rated HIGH with a CVSS base score of 7.2/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-34884?
Check the references section above for vendor advisories and patch information. Affected products include: Lenovo Thinkagile Vx3331 Firmware, Lenovo Thinkagile Vx3331, Lenovo Thinkagile Hx Enclosure Certified Node Firmware, Lenovo Thinkagile Hx Enclosure Certified Node, Lenovo Thinkagile Hx1021 Firmware.