CVE Feed

    Dashboard / CVE / CVE-2017-3767

    CVE-2017-3767

    A local privilege escalation vulnerability was identified in the Realtek audio driver versions prior to 6.0.1.8224 in some Lenovo ThinkPad products. An attacker with local privileges could execute code with administrative privileges.

    Published:Nov 13, 2017
    Last Modified:Apr 20, 2025
    EPS:Nov 13, 2017
    EPSS Score:0.00034
    CVSS Score:7.8

    Affected Products

    Vendor
    Lenovo
    Product
    Thinkpad 10
    Vendor
    Lenovo
    Product
    Thinkpad 11e
    Vendor
    Lenovo
    Product
    Thinkpad 13
    Vendor
    Lenovo
    Product
    Thinkpad L450
    Vendor
    Lenovo
    Product
    Thinkpad L460
    Vendor
    Lenovo
    Product
    Thinkpad L470 Kbl
    Vendor
    Lenovo
    Product
    Thinkpad L470 Skl
    Vendor
    Lenovo
    Product
    Thinkpad L560
    Vendor
    Lenovo
    Product
    Thinkpad P50
    Vendor
    Lenovo
    Product
    Thinkpad P50s
    Vendor
    Lenovo
    Product
    Thinkpad P51s
    Vendor
    Lenovo
    Product
    Thinkpad P70
    Vendor
    Lenovo
    Product
    Thinkpad P71
    Vendor
    Lenovo
    Product
    Thinkpad S1
    Vendor
    Lenovo
    Product
    Thinkpad S1 Yoga
    Vendor
    Lenovo
    Product
    Thinkpad S1 Yoga 12
    Vendor
    Lenovo
    Product
    Thinkpad S2
    Vendor
    Lenovo
    Product
    Thinkpad T440
    Vendor
    Lenovo
    Product
    Thinkpad T440p
    Vendor
    Lenovo
    Product
    Thinkpad T440s
    Vendor
    Lenovo
    Product
    Thinkpad T450
    Vendor
    Lenovo
    Product
    Thinkpad T450s
    Vendor
    Lenovo
    Product
    Thinkpad T460
    Vendor
    Lenovo
    Product
    Thinkpad T460p
    Vendor
    Lenovo
    Product
    Thinkpad T460s
    Vendor
    Lenovo
    Product
    Thinkpad T470
    Vendor
    Lenovo
    Product
    Thinkpad T470p
    Vendor
    Lenovo
    Product
    Thinkpad T470s Skl
    Vendor
    Lenovo
    Product
    Thinkpad T540p
    Vendor
    Lenovo
    Product
    Thinkpad T550
    Vendor
    Lenovo
    Product
    Thinkpad T560
    Vendor
    Lenovo
    Product
    Thinkpad T570
    Vendor
    Lenovo
    Product
    Thinkpad W540
    Vendor
    Lenovo
    Product
    Thinkpad W541
    Vendor
    Lenovo
    Product
    Thinkpad W550s
    Vendor
    Lenovo
    Product
    Thinkpad X1 Carbon
    Vendor
    Lenovo
    Product
    Thinkpad X1 Tablet
    Vendor
    Lenovo
    Product
    Thinkpad X1 Yoga
    Vendor
    Lenovo
    Product
    Thinkpad X1c
    Vendor
    Lenovo
    Product
    Thinkpad X240
    Vendor
    Lenovo
    Product
    Thinkpad X240s
    Vendor
    Lenovo
    Product
    Thinkpad X250
    Vendor
    Lenovo
    Product
    Thinkpad X260
    Vendor
    Lenovo
    Product
    Thinkpad X270 Kbl
    Vendor
    Lenovo
    Product
    Thinkpad X270 Skl
    Vendor
    Lenovo
    Product
    Thinkpad Yoga 11e
    Vendor
    Realtek
    Product
    Audio Driver Firmware

    Exploits

    No exploit reference

    Common Weakness Enumeration

    No CWE recorded yet

    Common Attack Pattern Enumeration and Classification (CAPEC)

    No CAPEC recorded yet

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High