CVE-2023-4029
17.08.2023, 17:15
A buffer overflow has been identified in the BoardUpdateAcpiDxe driver in some Lenovo ThinkPad products which may allow an attacker with local access and elevated privileges to execute arbitrary code.
Vendor | Product | Version |
---|---|---|
lenovo | k14_type_21cu_firmware | 𝑥 < 1.12 |
lenovo | k14_type_21cv_firmware | 𝑥 < 1.12 |
lenovo | thinkpad_s2_yoga_gen_8_firmware | 𝑥 < 1.10 |
lenovo | thinkpad_e14_gen_3_firmware | 𝑥 < 1.15 |
lenovo | thinkpad_e15_gen_3_firmware | 𝑥 < 1.15 |
lenovo | thinkpad_l13_gen_2_firmware | 𝑥 < 1.30 |
lenovo | thinkpad_l13_gen_3_firmware | 𝑥 < 1.19 |
lenovo | thinkpad_l13_gen_4_firmware | 𝑥 < 1.10 |
lenovo | thinkpad_l13_yoga_gen_4_firmware | 𝑥 < 1.10 |
lenovo | thinkpad_l13_yoga_gen_2_firmware | 𝑥 < 1.30 |
lenovo | thinkpad_l13_yoga_gen_3_firmware | 𝑥 < 1.19 |
lenovo | thinkpad_l14_gen_2_firmware | 𝑥 < 1.28 |
lenovo | thinkpad_l14_gen_3_firmware | 𝑥 < 1.23 |
lenovo | thinkpad_l14_gen_4_firmware | 𝑥 < 1.06 |
lenovo | thinkpad_l15_gen_2_firmware | 𝑥 < 1.28 |
lenovo | thinkpad_l15_gen_3_firmware | 𝑥 < 1.23 |
lenovo | thinkpad_l15_gen_4_firmware | 𝑥 < 1.06 |
lenovo | thinkpad_p14s_gen_2_firmware | 𝑥 < 1.34 |
lenovo | thinkpad_t14_gen_2_firmware | 𝑥 < 1.34 |
lenovo | thinkpad_t14s_gen_2_firmware | 𝑥 < 1.37 |
lenovo | thinkpad_s2_gen_6_firmware | 𝑥 < 1.30 |
lenovo | thinkpad_s2_gen_7_firmware | 𝑥 < 1.19 |
lenovo | thinkpad_s2_gen_8_firmware | 𝑥 < 1.10 |
lenovo | thinkpad_s2_yoga_gen_6_firmware | 𝑥 < 1.30 |
lenovo | thinkpad_s2_yoga_gen_7_firmware | 𝑥 < 1.19 |
lenovo | thinkpad_x13_gen_2_firmware | 𝑥 < 1.37 |
𝑥
= Vulnerable software versions