Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A potential vulnerability due to improper buffer validation in the SMI handler LenovoFlashDeviceInterface in Thinkpad X1 Fold Gen 1 could be exploited by an attacker with local access and elevated privileges to execute arbitrary code.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
输入验证不恰当
Vulnerability Title
Lenovo ThinkPad 缓冲区错误漏洞
Vulnerability Description
Lenovo ThinkPad是中国联想(Lenovo)公司的一个便携式计算机。 Lenovo ThinkPad BIOS 存在缓冲区错误漏洞,该漏洞源于 SMI 处理程序内的 LenovoFlashDeviceInterface 中的边界错误。本地攻击者可以运行特制程序来触发内存损坏并以提升的权限执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A