Show filters
42 Total Results
Displaying 11-20 of 42
Sort by:
Attacker Value
Unknown

CVE-2023-43574

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer over-read was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.
Attacker Value
Unknown

CVE-2023-43573

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer overflow was reported in the LEMALLDriversConnectedEventHook module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-43572

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer over-read was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.
Attacker Value
Unknown

CVE-2023-43571

Disclosure Date: November 08, 2023 (last updated November 16, 2023)
A buffer overflow was reported in the BiosExtensionLoader module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-43570

Disclosure Date: November 08, 2023 (last updated November 17, 2023)
A potential vulnerability was reported in the SMI callback function of the OemSmi driver that may allow a local attacker with elevated permissions to execute arbitrary code.
Attacker Value
Unknown

CVE-2023-43569

Disclosure Date: November 08, 2023 (last updated November 17, 2023)
A buffer overflow was reported in the OemSmi module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code. 
Attacker Value
Unknown

CVE-2023-43568

Disclosure Date: November 08, 2023 (last updated November 17, 2023)
A buffer over-read was reported in the LemSecureBootForceKey module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to disclose sensitive information.
Attacker Value
Unknown

CVE-2023-43567

Disclosure Date: November 08, 2023 (last updated November 17, 2023)
A buffer overflow was reported in the LemSecureBootForceKey module in some Lenovo Desktop products that may allow a local attacker with elevated privileges to execute arbitrary code.
Attacker Value
Unknown

CVE-2022-48181

Disclosure Date: June 05, 2023 (last updated October 08, 2023)
An ErrorMessage driver stack-based buffer overflow vulnerability in BIOS of some ThinkPad models could allow an attacker with local access to elevate their privileges and execute arbitrary code.
Attacker Value
Unknown

CVE-2021-46794

Disclosure Date: May 09, 2023 (last updated October 08, 2023)
Insufficient bounds checking in ASP (AMD Secure Processor) may allow for an out of bounds read in SMI (System Management Interface) mailbox checksum calculation triggering a data abort, resulting in a potential denial of service.