CVE-2020-8335

The BIOS tamper detection mechanism was not triggered in Lenovo ThinkPad A285, BIOS versions up to r0xuj70w; A485, BIOS versions up to r0wuj65w; T495 BIOS versions up to r12uj55w; T495s/X395, BIOS versions up to r13uj47w, while the emergency-reset button is pressed which may allow for unauthorized access.
References
Configurations

Configuration 1 (hide)

AND
cpe:2.3:h:lenovo:thinkpad_a275:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:thinkpad_a275_firmware:*:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:h:lenovo:thinkpad_a285:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:thinkpad_a285_firmware:*:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:h:lenovo:thinkpad_a475:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:thinkpad_a475_firmware:*:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:h:lenovo:thinkpad_a485:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:thinkpad_a485_firmware:*:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:h:lenovo:thinkpad_t495_drift:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:thinkpad_t495_drift_firmware:*:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:h:lenovo:thinkpad_t495s_jazz:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:thinkpad_t495s_jazz_firmware:*:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:h:lenovo:thinkpad_x1_carbon_\(20bx\):-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:thinkpad_x1_carbon_\(20bx\)_firmware:*:*:*:*:*:*:*:*

Configuration 8 (hide)

AND
cpe:2.3:h:lenovo:thinkpad_x395:-:*:*:*:*:*:*:*
cpe:2.3:o:lenovo:thinkpad_x395_firmware:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2020-09-01 22:15

Updated : 2020-09-10 14:56


NVD link : CVE-2020-8335

Mitre link : CVE-2020-8335

CVE.ORG link : CVE-2020-8335


JSON object : View

Products Affected

lenovo

  • thinkpad_a475_firmware
  • thinkpad_a285
  • thinkpad_x1_carbon_\(20bx\)_firmware
  • thinkpad_x395_firmware
  • thinkpad_t495_drift_firmware
  • thinkpad_t495s_jazz_firmware
  • thinkpad_a275
  • thinkpad_x1_carbon_\(20bx\)
  • thinkpad_t495_drift
  • thinkpad_a475
  • thinkpad_x395
  • thinkpad_a285_firmware
  • thinkpad_t495s_jazz
  • thinkpad_a485
  • thinkpad_a275_firmware
  • thinkpad_a485_firmware