Lucene search

K
lenovoLenovoLENOVO:PS500263-NOSID
HistoryAug 06, 2019 - 10:23 p.m.

Embedded Controller Update Vulnerability - US

2019-08-0622:23:35
support.lenovo.com
58

0.001 Low

EPSS

Percentile

30.9%

Lenovo Security Advisory: LEN-27764

Potential Impact: Privilege escalation

Severity: Medium

Scope of Impact: Lenovo-specific

CVE Identifier: CVE-2019-6171

Summary Description:

A vulnerability was reported in older ThinkPad systems that could allow a user with administrative privileges or physical access the ability to update the Embedded Controller with unsigned firmware.

Mitigation Strategy for Customers (what you should do to protect yourself):

Update to the version of BIOS (or later) described for your system in the product impact section.

0.001 Low

EPSS

Percentile

30.9%

Related for LENOVO:PS500263-NOSID