ID

VAR-201706-0358


CVE

CVE-2017-3748


TITLE

Lenovo VIBE cell phone's nac_server Vulnerability related to authorization, authority, and access control in components

Trust: 0.8

sources: JVNDB: JVNDB-2017-005175

DESCRIPTION

On Lenovo VIBE mobile phones, improper access controls on the nac_server component can be abused in conjunction with CVE-2017-3749 and CVE-2017-3750 to elevate privileges to the root user (commonly known as 'rooting' or "jail breaking" a device). Lenovo VIBE cell phone's nac_server The component contains vulnerabilities related to authorization, permissions, and access control.CVE-2017-3749 and CVE-2017-3750 Information is obtained, information is tampered with, and service operation is disrupted by exploiting it together with vulnerabilities (DoS) There is a possibility of being put into a state. VIBE is the Android smartphone series launched by Lenovo. There is a local elevation of privilege vulnerability in Lenovo's nac_server component, which can be exploited by an attacker to gain access to the root user. Lenovo VIBE Mobile is prone to a local privilege-escalation vulnerability

Trust: 2.52

sources: NVD: CVE-2017-3748 // JVNDB: JVNDB-2017-005175 // CNVD: CNVD-2017-16022 // BID: 99295 // VULMON: CVE-2017-3748

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2017-16022

AFFECTED PRODUCTS

vendor:googlemodel:androidscope:lteversion:5.1.1

Trust: 1.0

vendor:googlemodel:androidscope: - version: -

Trust: 0.8

vendor:lenovomodel:vibescope: - version: -

Trust: 0.6

vendor:googlemodel:androidscope:eqversion:5.1.1

Trust: 0.6

vendor:lenovomodel:vibescope:eqversion:0

Trust: 0.3

sources: CNVD: CNVD-2017-16022 // BID: 99295 // JVNDB: JVNDB-2017-005175 // CNNVD: CNNVD-201706-1176 // NVD: CVE-2017-3748

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2017-3748
value: HIGH

Trust: 1.0

NVD: CVE-2017-3748
value: HIGH

Trust: 0.8

CNVD: CNVD-2017-16022
value: HIGH

Trust: 0.6

CNNVD: CNNVD-201706-1176
value: HIGH

Trust: 0.6

VULMON: CVE-2017-3748
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2017-3748
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.9

CNVD: CNVD-2017-16022
severity: HIGH
baseScore: 7.2
vectorString: AV:L/AC:L/AU:N/C:C/I:C/A:C
accessVector: LOCAL
accessComplexity: LOW
authentication: NONE
confidentialityImpact: COMPLETE
integrityImpact: COMPLETE
availabilityImpact: COMPLETE
exploitabilityScore: 3.9
impactScore: 10.0
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.6

nvd@nist.gov: CVE-2017-3748
baseSeverity: HIGH
baseScore: 7.8
vectorString: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
attackVector: LOCAL
attackComplexity: LOW
privilegesRequired: LOW
userInteraction: NONE
scope: UNCHANGED
confidentialityImpact: HIGH
integrityImpact: HIGH
availabilityImpact: HIGH
exploitabilityScore: 1.8
impactScore: 5.9
version: 3.0

Trust: 1.8

sources: CNVD: CNVD-2017-16022 // VULMON: CVE-2017-3748 // JVNDB: JVNDB-2017-005175 // CNNVD: CNNVD-201706-1176 // NVD: CVE-2017-3748

PROBLEMTYPE DATA

problemtype:NVD-CWE-noinfo

Trust: 1.0

problemtype:CWE-264

Trust: 0.8

sources: JVNDB: JVNDB-2017-005175 // NVD: CVE-2017-3748

THREAT TYPE

local

Trust: 0.9

sources: BID: 99295 // CNNVD: CNNVD-201706-1176

TYPE

permissions and access control issues

Trust: 0.6

sources: CNNVD: CNNVD-201706-1176

CONFIGURATIONS

sources: JVNDB: JVNDB-2017-005175

PATCH

title:トップページurl:https://www.android.com/intl/ja_jp/phones/

Trust: 0.8

title:VIBE Seriesurl:http://www3.lenovo.com/in/en/smartphones/smartphone-vibe-series/c/smartphone-vibe-series

Trust: 0.8

title:Patch for LenovoVIBEnac_server component local privilege vulnerabilityurl:https://www.cnvd.org.cn/patchInfo/show/98389

Trust: 0.6

title:Multiple Lenovo VIBE Fixes for mobile rights permissions and access control vulnerabilitiesurl:http://www.cnnvd.org.cn/web/xxk/bdxqById.tag?id=71340

Trust: 0.6

title:Fireeye Threat Researchurl:https://www.fireeye.com/blog/threat-research/2017/05/gaining-root-on-lenovo-vibe.html

Trust: 0.2

sources: CNVD: CNVD-2017-16022 // VULMON: CVE-2017-3748 // JVNDB: JVNDB-2017-005175 // CNNVD: CNNVD-201706-1176

EXTERNAL IDS

db:BIDid:99295

Trust: 3.4

db:NVDid:CVE-2017-3748

Trust: 3.4

db:LENOVOid:LEN-15823

Trust: 2.6

db:JVNDBid:JVNDB-2017-005175

Trust: 0.8

db:CNVDid:CNVD-2017-16022

Trust: 0.6

db:CNNVDid:CNNVD-201706-1176

Trust: 0.6

db:VULMONid:CVE-2017-3748

Trust: 0.1

sources: CNVD: CNVD-2017-16022 // VULMON: CVE-2017-3748 // BID: 99295 // JVNDB: JVNDB-2017-005175 // CNNVD: CNNVD-201706-1176 // NVD: CVE-2017-3748

REFERENCES

url:http://www.securityfocus.com/bid/99295

Trust: 2.6

url:https://support.lenovo.com/us/en/product_security/len-15823

Trust: 2.0

url:https://nvd.nist.gov/vuln/detail/cve-2017-3748

Trust: 1.4

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2017-3748

Trust: 0.8

url:https://support.lenovo.com/us/zh/product_security/len-15823

Trust: 0.6

url:http://www.lenovo.com/ca/en/

Trust: 0.3

url:https://cwe.mitre.org/data/definitions/.html

Trust: 0.1

url:https://nvd.nist.gov

Trust: 0.1

url:https://www.fireeye.com/blog/threat-research/2017/05/gaining-root-on-lenovo-vibe.html

Trust: 0.1

sources: CNVD: CNVD-2017-16022 // VULMON: CVE-2017-3748 // BID: 99295 // JVNDB: JVNDB-2017-005175 // CNNVD: CNNVD-201706-1176 // NVD: CVE-2017-3748

CREDITS

Jake Valletta from Mandiant.

Trust: 0.9

sources: BID: 99295 // CNNVD: CNNVD-201706-1176

SOURCES

db:CNVDid:CNVD-2017-16022
db:VULMONid:CVE-2017-3748
db:BIDid:99295
db:JVNDBid:JVNDB-2017-005175
db:CNNVDid:CNNVD-201706-1176
db:NVDid:CVE-2017-3748

LAST UPDATE DATE

2025-04-20T23:29:41.192000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2017-16022date:2017-07-24T00:00:00
db:VULMONid:CVE-2017-3748date:2019-10-03T00:00:00
db:BIDid:99295date:2017-06-28T00:00:00
db:JVNDBid:JVNDB-2017-005175date:2017-07-20T00:00:00
db:CNNVDid:CNNVD-201706-1176date:2019-10-23T00:00:00
db:NVDid:CVE-2017-3748date:2025-04-20T01:37:25.860

SOURCES RELEASE DATE

db:CNVDid:CNVD-2017-16022date:2017-07-24T00:00:00
db:VULMONid:CVE-2017-3748date:2017-06-29T00:00:00
db:BIDid:99295date:2017-06-28T00:00:00
db:JVNDBid:JVNDB-2017-005175date:2017-07-20T00:00:00
db:CNNVDid:CNNVD-201706-1176date:2017-06-30T00:00:00
db:NVDid:CVE-2017-3748date:2017-06-29T15:29:00.207