CVE-2015-2234
12.05.2015, 19:59
Race condition in Lenovo System Update (formerly ThinkVantage System Update) before 5.06.0034 uses world-writable permissions for the update files directory, which allows local users to gain privileges by writing to an update file after the signature is validated.
Vendor | Product | Version |
---|---|---|
lenovo | system_update | 𝑥 ≤ 5.06.0027 |
𝑥
= Vulnerable software versions
References