Recently, Lenovo’s new BIOS updates fixes the high-severity vulnerabilities impacting hundreds of devices in several models (Desktop, All in One, IdeaCentre, Legion, ThinkCentre, ThinkPad, ThinkAgile, ThinkStation, ThinkSystem).
The potential impact may include Information disclosure, privilege escalation and denial of service.
American Megatrends security enhancements (AMI), no CVE available.
According to the Lenovo’s security advisory, “Update system firmware to the version (or newer) indicated for your model”.
The company has fixed the issues in the new BIOS updates for impacted products. Remaining fixes are expected by the end of September and October and few models may receive patches in the upcoming year.
The complete list of the impacted computer models and the BIOS firmware version that addresses the vulnerabilities are included in the ‘Security Advisory’, with links to the download portal for each model.
Download Free SWG – Secure Web Filtering – E-book
Phishing attackers used Google Docs to deliver malicious links, bypassing security measures and redirecting victims…
The Python-based NodeStealer, a sophisticated info-stealer, has evolved to target new information and employ advanced…
A significant XSS vulnerability was recently uncovered in Microsoft’s Bing.com, potentially allowing attackers to execute…
Meta has announced the removal of over 2 million accounts connected to malicious activities, including…
Critical security vulnerability has been identified in Veritas Enterprise Vault, a widely-used archiving and content…
A critical security vulnerability has been disclosed in the popular file archiving tool 7-Zip, allowing…