Show filters
46 Total Results
Displaying 11-20 of 46
Sort by:
Attacker Value
Unknown

CVE-2023-43574

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer over-read was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.
Attacker Value
Unknown

CVE-2023-43573

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer overflow was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-43572

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer over-read was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.
Attacker Value
Unknown

CVE-2023-43571

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer overflow was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-43570

Disclosure Date: November 08, 2023 (last updated November 17, 2023)
A potential vulnerability was reported in the SMI callback function of the OemSmi driver that may allow a local attacker with elevated permissions to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-43569

Disclosure Date: November 08, 2023 (last updated November 17, 2023)
A buffer overflow was reported in the OemSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. 
Attacker Value
Unknown

CVE-2023-43568

Disclosure Date: November 08, 2023 (last updated November 17, 2023)
A buffer over-read was reported in the LemSecureBootForceKey module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.
Attacker Value
Unknown

CVE-2023-43567

Disclosure Date: November 08, 2023 (last updated November 17, 2023)
A buffer overflow was reported in the LemSecureBootForceKey module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-20597

Disclosure Date: September 20, 2023 (last updated October 08, 2023)
Improper initialization of variables in the DXE driver may allow a privileged user to leak sensitive information via local access.
Attacker Value
Unknown

CVE-2023-20594

Disclosure Date: September 20, 2023 (last updated October 08, 2023)
Improper initialization of variables in the DXE driver may allow a privileged user to leak sensitive information via local access.